2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-8316IntelliJ IDEA XML parser was found vulnerable to XML External Entity attack, an attacker can exploit the vulnerability b...
CVE-2017-6215paypal/permissions-sdk-php is vulnerable to reflected XSS in the samples/GetAccessToken.php verification_code parameter,...
CVE-2017-6213paypal/invoice-sdk-php is vulnerable to reflected XSS in samples/permissions.php via the permToken parameter, resulting ...
CVE-2017-16349HIGH8.1An exploitable XML external entity vulnerability exists in the reporting functionality of SAP BPC. A specially crafted X...
CVE-2017-16347CRITICAL9.9An attacker could send an authenticated HTTP request to trigger this vulnerability in Insteon Hub running firmware versi...
CVE-2017-16346CRITICAL9.9An attacker could send an authenticated HTTP request to trigger this vulnerability in Insteon Hub running firmware versi...
CVE-2017-16345CRITICAL9.9An attacker could send an authenticated HTTP request to trigger this vulnerability in Insteon Hub running firmware versi...
CVE-2017-16344CRITICAL9.9An attacker could send an authenticated HTTP request to trigger this vulnerability in Insteon Hub running firmware versi...
CVE-2017-16343CRITICAL9.9An attacker could send an authenticated HTTP request to trigger this vulnerability in Insteon Hub running firmware versi...
CVE-2017-16342CRITICAL9.9An attacker could send an authenticated HTTP request to trigger this vulnerability in Insteon Hub running firmware versi...
CVE-2017-16341CRITICAL9.9An attacker could send an authenticated HTTP request to trigger this vulnerability in Insteon Hub running firmware versi...
CVE-2017-16340CRITICAL9.9An attacker could send an authenticated HTTP request to trigger this vulnerability in Insteon Hub running firmware versi...
CVE-2017-16339CRITICAL9.9An attacker could send an authenticated HTTP request to trigger this vulnerability in Insteon Hub running firmware versi...
CVE-2017-16338CRITICAL9.9An attacker could send an authenticated HTTP request to trigger this vulnerability in Insteon Hub running firmware versi...
CVE-2017-14446CRITICAL9.9An exploitable stack-based buffer overflow vulnerability exists in Insteon Hub running firmware version 1012. The HTTP s...
CVE-2017-14445CRITICAL9.9An exploitable buffer overflow vulnerability exists in Insteon Hub running firmware version 1012. The HTTP server implem...
CVE-2017-14444CRITICAL9.9An exploitable buffer overflow vulnerability exists in Insteon Hub running firmware version 1012. The HTTP server implem...
CVE-2017-9120CRITICAL9.8PHP 7.x through 7.1.5 allows remote attackers to cause a denial of service (buffer overflow and application crash) or po...
CVE-2017-9118HIGH7.5PHP 7.1.5 has an Out of bounds access in php_pcre_replace_impl via a crafted preg_replace call.
CVE-2017-5692Out-of-bounds read condition in older versions of some Intel Graphics Driver for Windows code branches allows local user...
CVE-2017-5693Firmware in the Intel Puma 5, 6, and 7 Series might experience resource depletion or timeout, which allows a network att...
CVE-2017-13652NetApp OnCommand Insight version 7.3.0 and versions prior to 7.2.0 are susceptible to clickjacking attacks which could c...
CVE-2017-17708Because of insufficient authorization checks it is possible for any authenticated user to change profile data of other u...
CVE-2017-17707Due to missing authorization checks, any authenticated user is able to list, upload, or delete attachments to password s...
CVE-2017-17174Some Huawei products RSE6500 V500R002C00; SoftCo V200R003C20SPCb00; VP9660 V600R006C10; eSpace U1981 V100R001C20; V200R0...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now