2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-13678 | — | — | 1.1% | Apr 11, 2018 | Stored XSS vulnerability in the Symantec Advanced Secure Gateway (ASG) and ProxySG management consoles. A malicious appl... |
| CVE-2017-13677 | — | — | 5.2% | Apr 11, 2018 | Denial-of-service (DoS) vulnerability in the Symantec Advanced Secure Gateway (ASG) and ProxySG management consoles. A r... |
| CVE-2017-9839 | — | — | 1.1% | Apr 11, 2018 | Dolibarr ERP/CRM is affected by SQL injection in versions before 5.0.4 via product/stats/card.php (type parameter). |
| CVE-2017-9838 | — | — | 0.6% | Apr 11, 2018 | Dolibarr ERP/CRM is affected by multiple reflected Cross-Site Scripting (XSS) vulnerabilities in versions before 5.0.4: ... |
| CVE-2017-18260 | — | — | 1.1% | Apr 11, 2018 | Dolibarr ERP/CRM is affected by multiple SQL injection vulnerabilities in versions through 7.0.0 via comm/propal/list.ph... |
| CVE-2017-18259 | — | — | 0.6% | Apr 11, 2018 | Dolibarr ERP/CRM is affected by stored Cross-Site Scripting (XSS) in versions through 7.0.0. |
| CVE-2017-14611 | — | — | 2.0% | Apr 10, 2018 | SSRF (Server Side Request Forgery) in Cockpit 0.13.0 allows remote attackers to read arbitrary files or send TCP traffic... |
| CVE-2017-14323 | — | — | 4.5% | Apr 10, 2018 | SSRF (Server Side Request Forgery) in getRemoteImage.php in Ueditor in Onethink V1.0 and V1.1 allows remote attackers to... |
| CVE-2017-18100 | — | — | 0.9% | Apr 10, 2018 | The agile wallboard gadget in Atlassian Jira before version 7.8.1 allows remote attackers to inject arbitrary HTML or Ja... |
| CVE-2017-1081 | — | — | 2.7% | Apr 10, 2018 | In FreeBSD before 11.0-STABLE, 11.0-RELEASE-p10, 10.3-STABLE, and 10.3-RELEASE-p19, ipfilter using "keep state" or "keep... |
| CVE-2017-2826 | — | — | 3.4% | Apr 9, 2018 | An information disclosure vulnerability exists in the iConfig proxy request of Zabbix server 2.4.X. A specially crafted ... |
| CVE-2017-18258 | — | — | 2.7% | Apr 8, 2018 | The xz_head function in xzlib.c in libxml2 before 2.9.6 allows remote attackers to cause a denial of service (memory con... |
| CVE-2017-18098 | — | — | 0.9% | Apr 6, 2018 | The searchrequest-xml resource in Atlassian Jira before version 7.6.1 allows remote attackers to inject arbitrary HTML o... |
| CVE-2017-18097 | — | — | 0.7% | Apr 6, 2018 | The Trello board importer resource in Atlassian Jira before version 7.6.1 allows remote attackers who can convince a Jir... |
| CVE-2017-0751 | — | — | 0.1% | Apr 5, 2018 | An elevation of privilege vulnerability in the Qualcomm QCE driver. Product: Android. Versions: Android kernel. Android ... |
| CVE-2017-0748 | — | — | 0.4% | Apr 5, 2018 | An information disclosure vulnerability in the Qualcomm audio driver. Product: Android. Versions: Android Kernel. Androi... |
| CVE-2017-0744 | — | — | 0.1% | Apr 5, 2018 | An elevation of privilege vulnerability in the NVIDIA firmware processing code. Product: Android. Versions: Android kern... |
| CVE-2017-0431 | — | — | 0.2% | Apr 5, 2018 | An elevation of privilege vulnerability in Qualcomm closed source components. Product: Android. Versions: Android kernel... |
| CVE-2017-6426 | — | — | 0.4% | Apr 4, 2018 | An information disclosure vulnerability in the Qualcomm SPMI driver. Product: Android. Versions: Android kernel. Android... |
| CVE-2017-6425 | — | — | 0.4% | Apr 4, 2018 | An information disclosure vulnerability in the Qualcomm video driver. Product: Android. Versions: Android kernel. Androi... |
| CVE-2017-6424 | — | — | 0.2% | Apr 4, 2018 | An elevation of privilege vulnerability in the Qualcomm WiFi driver. Product: Android. Versions: Android kernel. Android... |
| CVE-2017-6423 | — | — | 0.2% | Apr 4, 2018 | An elevation of privilege vulnerability in the Qualcomm kyro L2 driver. Product: Android. Versions: Android kernel. Andr... |
| CVE-2017-18257 | — | — | 0.4% | Apr 4, 2018 | The __get_data_block function in fs/f2fs/data.c in the Linux kernel before 4.11 allows local users to cause a denial of ... |
| CVE-2017-13272 | — | — | 1.9% | Apr 4, 2018 | In alarm_ready_generic of alarm.cc, there is a possible out of bounds write due to a use after free. This could lead to ... |
| CVE-2017-13271 | — | — | 0.3% | Apr 4, 2018 | A elevation of privilege vulnerability in the upstream kernel mnh_sm driver. Product: Android. Versions: Android kernel.... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now