2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-16073 | — | — | 1.1% | Jun 7, 2018 | noderequest was a malicious module published with the intent to hijack environment variables. It has been unpublished by... |
| CVE-2017-16072 | — | — | 1.2% | Jun 7, 2018 | nodemailer.js was a malicious module published with the intent to hijack environment variables. It has been unpublished ... |
| CVE-2017-16071 | — | — | 1.1% | Jun 7, 2018 | nodemailer-js was a malicious module published with the intent to hijack environment variables. It has been unpublished ... |
| CVE-2017-16070 | — | — | 1.2% | Jun 7, 2018 | nodecaffe was a malicious module published with the intent to hijack environment variables. It has been unpublished by n... |
| CVE-2017-16069 | — | — | 1.2% | Jun 7, 2018 | nodeffmpeg was a malicious module published with the intent to hijack environment variables. It has been unpublished by ... |
| CVE-2017-16068 | — | — | 1.2% | Jun 7, 2018 | ffmepg was a malicious module published with the intent to hijack environment variables. It has been unpublished by npm. |
| CVE-2017-16067 | — | — | 1.1% | Jun 7, 2018 | node-opencv was a malicious module published with the intent to hijack environment variables. It has been unpublished by... |
| CVE-2017-16066 | — | — | 1.1% | Jun 7, 2018 | opencv.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by n... |
| CVE-2017-16065 | — | — | 1.2% | Jun 7, 2018 | openssl.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by ... |
| CVE-2017-16064 | — | — | 1.2% | Jun 7, 2018 | node-openssl was a malicious module published with the intent to hijack environment variables. It has been unpublished b... |
| CVE-2017-16063 | — | — | 1.1% | Jun 7, 2018 | node-opensl was a malicious module published with the intent to hijack environment variables. It has been unpublished by... |
| CVE-2017-16060 | — | — | 1.2% | Jun 7, 2018 | babelcli was a malicious module published with the intent to hijack environment variables. It has been unpublished by np... |
| CVE-2017-16059 | — | — | 1.1% | Jun 7, 2018 | mssql-node was a malicious module published with the intent to hijack environment variables. It has been unpublished by ... |
| CVE-2017-16058 | — | — | 1.1% | Jun 7, 2018 | gruntcli was a malicious module published with the intent to hijack environment variables. It has been unpublished by np... |
| CVE-2017-16057 | — | — | 1.1% | Jun 7, 2018 | nodemssql was a malicious module published with the intent to hijack environment variables. It has been unpublished by n... |
| CVE-2017-16056 | — | — | 1.1% | Jun 7, 2018 | mssql.js was a malicious module published with the intent to hijack environment variables. It has been unpublished by np... |
| CVE-2017-18154 | — | — | 0.2% | Jun 6, 2018 | A crafted binder request can cause an arbitrary unmap in MediaServer in all Android releases from CAF (Android for MSM, ... |
| CVE-2017-7933 | — | — | 1.7% | Jun 6, 2018 | In ABB IP GATEWAY 3.39 and prior, some configuration files contain passwords stored in plain-text, which may allow an at... |
| CVE-2017-7931 | — | — | 2.6% | Jun 6, 2018 | In ABB IP GATEWAY 3.39 and prior, by accessing a specific uniform resource locator (URL) on the web server, a malicious ... |
| CVE-2017-7906 | — | — | 0.7% | Jun 6, 2018 | In ABB IP GATEWAY 3.39 and prior, the web server does not sufficiently verify that a request was performed by the authen... |
| CVE-2017-7639 | — | — | 1.1% | Jun 5, 2018 | QNAP NAS application Proxy Server through version 1.2.0 does not authenticate requests properly. Successful exploitation... |
| CVE-2017-7637 | — | — | 3.2% | Jun 5, 2018 | QNAP NAS application Proxy Server through version 1.2.0 allows remote attackers to run arbitrary OS commands against the... |
| CVE-2017-7636 | — | — | 1.2% | Jun 5, 2018 | Cross-site scripting (XSS) vulnerability in QNAP NAS application Proxy Server through version 1.2.0 allows remote attack... |
| CVE-2017-7635 | — | — | 0.6% | Jun 5, 2018 | QNAP NAS application Proxy Server through version 1.2.0 does not utilize CSRF protections. |
| CVE-2017-7654 | — | — | 2.2% | Jun 5, 2018 | In Eclipse Mosquitto 1.4.15 and earlier, a Memory Leak vulnerability was found within the Mosquitto Broker. Unauthentica... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now