2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-18906 | HIGH | 8.1 | 0.8% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 4.0.0, 3.10.2, and 3.9.2, when Single Sign-On OAuth2 is used. An att... |
| CVE-2017-18909 | HIGH | 7.5 | 0.7% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 3.9.0 when SAML is used. Encryption and signature verification are n... |
| CVE-2017-18903 | HIGH | 8.8 | 0.4% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 4.0.0, 3.10.2, and 3.9.2. CSRF can occur if CORS is enabled. |
| CVE-2017-18894 | HIGH | 8.1 | 0.8% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 4.2.0, 4.1.1, and 4.0.5, when used as an OAuth 2.0 service provider.... |
| CVE-2017-18886 | HIGH | 8.8 | 0.9% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2. It allows a bypass of restrictions on use o... |
| CVE-2017-18884 | HIGH | 8.1 | 0.8% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2. It allows attackers to gain privileges by u... |
| CVE-2017-18871 | HIGH | 7.5 | 1.1% | Jun 19, 2020 | An issue was discovered in Mattermost Server before 4.5.0, 4.4.5, 4.3.4, and 4.2.2. It allows attackers to cause a denia... |
| CVE-2017-9108 | HIGH | 7.5 | 2.2% | Jun 18, 2020 | An issue was discovered in adns before 1.5.2. adnshost mishandles a missing final newline on a stdin read. It is wrong t... |
| CVE-2017-9107 | HIGH | 7.5 | 1.8% | Jun 18, 2020 | An issue was discovered in adns before 1.5.2. It overruns reading a buffer if a domain ends with backslash. If the query... |
| CVE-2017-9106 | HIGH | 7.5 | 1.9% | Jun 18, 2020 | An issue was discovered in adns before 1.5.2. adns_rr_info mishandles a bogus *datap. The general pattern for formatting... |
| CVE-2017-9105 | HIGH | 8.8 | 3.6% | Jun 18, 2020 | An issue was discovered in adns before 1.5.2. It corrupts a pointer when a nameserver speaks first because of a wrong nu... |
| CVE-2017-18868 | HIGH | 7.7 | 0.8% | May 21, 2020 | Digi XBee 2 devices do not have an effective protection mechanism against remote AT commands, because of issues related ... |
| CVE-2017-18864 | HIGH | 8.8 | 0.6% | May 5, 2020 | Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects R6400 before 1.0.... |
| CVE-2017-18860 | HIGH | 7.7 | 0.5% | Apr 29, 2020 | Certain NETGEAR devices are affected by debugging command execution. This affects FS752TP 5.4.2.19 and earlier, GS108Tv2... |
| CVE-2017-18855 | HIGH | 8.8 | 1.0% | Apr 29, 2020 | NETGEAR WNR854T devices before 1.5.2 are affected by command execution. |
| CVE-2017-18859 | HIGH | 7.5 | 1.0% | Apr 28, 2020 | Certain NETGEAR devices are affected by slowdown/stoppage. This affects C6300 before 2017-05-30, CM400 before 2017-05-30... |
| CVE-2017-18863 | HIGH | 7.1 | 0.5% | Apr 28, 2020 | Certain NETGEAR devices are affected by command execution via a PHP form. This affects WN604 3.3.3 and earlier, WNAP210v... |
| CVE-2017-18861 | HIGH | 8 | 0.4% | Apr 28, 2020 | Certain NETGEAR devices are affected by CSRF. This affects ReadyNAS Surveillance 1.4.3-15-x86 and earlier and ReadyNAS S... |
| CVE-2017-18705 | HIGH | 8.8 | 0.5% | Apr 24, 2020 | Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D7800 before 1.0.1.28... |
| CVE-2017-18703 | HIGH | 8.8 | 0.5% | Apr 24, 2020 | Certain NETGEAR devices are affected by CSRF. This affects D1500 before 1.0.0.25, D500 before 1.0.0.25, D6100 before 1.0... |
| CVE-2017-18727 | HIGH | 8.8 | 0.6% | Apr 24, 2020 | Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6200... |
| CVE-2017-18726 | HIGH | 8.8 | 0.8% | Apr 24, 2020 | Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects R6020... |
| CVE-2017-18725 | HIGH | 8.8 | 0.6% | Apr 24, 2020 | Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6200... |
| CVE-2017-18724 | HIGH | 8.8 | 0.8% | Apr 24, 2020 | Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6200... |
| CVE-2017-18723 | HIGH | 8.8 | 0.8% | Apr 24, 2020 | Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6200... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now