2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2017-18906HIGH8.1An issue was discovered in Mattermost Server before 4.0.0, 3.10.2, and 3.9.2, when Single Sign-On OAuth2 is used. An att...
CVE-2017-18909HIGH7.5An issue was discovered in Mattermost Server before 3.9.0 when SAML is used. Encryption and signature verification are n...
CVE-2017-18903HIGH8.8An issue was discovered in Mattermost Server before 4.0.0, 3.10.2, and 3.9.2. CSRF can occur if CORS is enabled.
CVE-2017-18894HIGH8.1An issue was discovered in Mattermost Server before 4.2.0, 4.1.1, and 4.0.5, when used as an OAuth 2.0 service provider....
CVE-2017-18886HIGH8.8An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2. It allows a bypass of restrictions on use o...
CVE-2017-18884HIGH8.1An issue was discovered in Mattermost Server before 4.3.0, 4.2.1, and 4.1.2. It allows attackers to gain privileges by u...
CVE-2017-18871HIGH7.5An issue was discovered in Mattermost Server before 4.5.0, 4.4.5, 4.3.4, and 4.2.2. It allows attackers to cause a denia...
CVE-2017-9108HIGH7.5An issue was discovered in adns before 1.5.2. adnshost mishandles a missing final newline on a stdin read. It is wrong t...
CVE-2017-9107HIGH7.5An issue was discovered in adns before 1.5.2. It overruns reading a buffer if a domain ends with backslash. If the query...
CVE-2017-9106HIGH7.5An issue was discovered in adns before 1.5.2. adns_rr_info mishandles a bogus *datap. The general pattern for formatting...
CVE-2017-9105HIGH8.8An issue was discovered in adns before 1.5.2. It corrupts a pointer when a nameserver speaks first because of a wrong nu...
CVE-2017-18868HIGH7.7Digi XBee 2 devices do not have an effective protection mechanism against remote AT commands, because of issues related ...
CVE-2017-18864HIGH8.8Certain NETGEAR devices are affected by a buffer overflow by an unauthenticated attacker. This affects R6400 before 1.0....
CVE-2017-18860HIGH7.7Certain NETGEAR devices are affected by debugging command execution. This affects FS752TP 5.4.2.19 and earlier, GS108Tv2...
CVE-2017-18855HIGH8.8NETGEAR WNR854T devices before 1.5.2 are affected by command execution.
CVE-2017-18859HIGH7.5Certain NETGEAR devices are affected by slowdown/stoppage. This affects C6300 before 2017-05-30, CM400 before 2017-05-30...
CVE-2017-18863HIGH7.1Certain NETGEAR devices are affected by command execution via a PHP form. This affects WN604 3.3.3 and earlier, WNAP210v...
CVE-2017-18861HIGH8Certain NETGEAR devices are affected by CSRF. This affects ReadyNAS Surveillance 1.4.3-15-x86 and earlier and ReadyNAS S...
CVE-2017-18705HIGH8.8Certain NETGEAR devices are affected by incorrect configuration of security settings. This affects D7800 before 1.0.1.28...
CVE-2017-18703HIGH8.8Certain NETGEAR devices are affected by CSRF. This affects D1500 before 1.0.0.25, D500 before 1.0.0.25, D6100 before 1.0...
CVE-2017-18727HIGH8.8Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6200...
CVE-2017-18726HIGH8.8Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects R6020...
CVE-2017-18725HIGH8.8Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6200...
CVE-2017-18724HIGH8.8Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6200...
CVE-2017-18723HIGH8.8Certain NETGEAR devices are affected by a stack-based buffer overflow by an unauthenticated attacker. This affects D6200...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now