2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-14417 | CRITICAL | 9.8 | 1.3% | Sep 13, 2017 | register_send.php on D-Link DIR-850L REV. B (with firmware through FW208WWb02) devices does not require authentication, ... |
| CVE-2017-14122 | CRITICAL | 9.1 | 1.8% | Sep 3, 2017 | unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from a stack-based buffer over-read in unrarlib.c, related to ExtrFile... |
| CVE-2017-14062 | CRITICAL | 9.8 | 4.0% | Aug 31, 2017 | Integer overflow in the decode_digit function in puny_decode.c in Libidn2 before 2.0.4 allows remote attackers to cause ... |
| CVE-2017-12865 | CRITICAL | 9.8 | 5.5% | Aug 29, 2017 | Stack-based buffer overflow in "dnsproxy.c" in connman 1.34 and earlier allows remote attackers to cause a denial of ser... |
| CVE-2017-13715 | CRITICAL | 9.8 | 9.7% | Aug 29, 2017 | The __skb_flow_dissect function in net/core/flow_dissector.c in the Linux kernel before 4.3 does not ensure that n_proto... |
| CVE-2017-13707 | CRITICAL | 9.8 | 3.0% | Aug 27, 2017 | Privilege escalation in Replibit Backup Manager earlier than version 2017.08.04 allows attackers to gain root privileges... |
| CVE-2017-12816 | CRITICAL | 9.8 | 1.5% | Aug 25, 2017 | In Kaspersky Internet Security for Android 11.12.4.1622, some of application exports activities have weak permissions, w... |
| CVE-2017-11357 | CRITICAL | 9.8 | 75.7% | Aug 23, 2017 | Progress Telerik UI for ASP.NET AJAX before R2 2017 SP2 does not properly restrict user input to RadAsyncUpload, which a... |
| CVE-2017-11317 | CRITICAL | 9.8 | 83.5% | Aug 23, 2017 | Telerik.Web.UI in Progress Telerik UI for ASP.NET AJAX before R1 2017 and R2 before R2 2017 SP2 uses weak RadAsyncUpload... |
| CVE-2017-13137 | CRITICAL | 9.8 | 2.3% | Aug 23, 2017 | The FormCraft Basic plugin 1.0.5 for WordPress has SQL injection in the id parameter to form.php. |
| CVE-2017-12858 | CRITICAL | 9.8 | 3.7% | Aug 23, 2017 | Double free vulnerability in the _zip_dirent_read function in zip_dirent.c in libzip allows attackers to have unspecifie... |
| CVE-2017-13139 | CRITICAL | 9.8 | 3.8% | Aug 23, 2017 | In ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1, the ReadOneMNGImage function in coders/png.c has an out-of-bounds ... |
| CVE-2017-12943 | CRITICAL | 9.8 | 39.2% | Aug 18, 2017 | D-Link DIR-600 Rev Bx devices with v2.x firmware allow remote attackers to read passwords via a model/__show_info.php?RE... |
| CVE-2017-12762 | CRITICAL | 9.8 | 5.2% | Aug 9, 2017 | In /drivers/isdn/i4l/isdn_net.c: A user-controlled buffer is copied into a local buffer of constant size using strcpy wi... |
| CVE-2017-10111 | CRITICAL | 9.6 | 2.1% | Aug 8, 2017 | Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). The supported vers... |
| CVE-2017-10110 | CRITICAL | 9.6 | 2.4% | Aug 8, 2017 | Vulnerability in the Java SE component of Oracle Java SE (subcomponent: AWT). Supported versions that are affected are J... |
| CVE-2017-10107 | CRITICAL | 9.6 | 2.6% | Aug 8, 2017 | Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: RMI). Supported versions that ... |
| CVE-2017-10102 | CRITICAL | 9 | 3.0% | Aug 8, 2017 | Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: RMI). Supported versions that ... |
| CVE-2017-10101 | CRITICAL | 9.6 | 2.6% | Aug 8, 2017 | Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JAXP). Supported versions that... |
| CVE-2017-10096 | CRITICAL | 9.6 | 2.6% | Aug 8, 2017 | Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: JAXP). Supported versions that... |
| CVE-2017-10090 | CRITICAL | 9.6 | 2.6% | Aug 8, 2017 | Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions... |
| CVE-2017-10089 | CRITICAL | 9.6 | 2.4% | Aug 8, 2017 | Vulnerability in the Java SE component of Oracle Java SE (subcomponent: ImageIO). Supported versions that are affected a... |
| CVE-2017-10087 | CRITICAL | 9.6 | 2.6% | Aug 8, 2017 | Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions... |
| CVE-2017-10086 | CRITICAL | 9.6 | 2.1% | Aug 8, 2017 | Vulnerability in the Java SE component of Oracle Java SE (subcomponent: JavaFX). Supported versions that are affected ar... |
| CVE-2017-12478 | CRITICAL | 9.8 | 78.3% | Aug 7, 2017 | It was discovered that the api/storage web interface in Unitrends Backup (UB) before 10.0.0 has an issue in which one of... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now