2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-17497 | HIGH | 7.5 | 1.4% | Dec 10, 2017 | In Tidy 5.7.0, the prvTidyTidyMetaCharset function in clean.c allows attackers to cause a denial of service (Segmentatio... |
| CVE-2017-16368 | HIGH | 8.8 | 13.2% | Dec 9, 2017 | An issue was discovered in Adobe Acrobat and Reader: 2017.012.20098 and earlier versions, 2017.011.30066 and earlier ver... |
| CVE-2017-15868 | HIGH | 7.8 | 0.4% | Dec 5, 2017 | The bnep_add_connection function in net/bluetooth/bnep/core.c in the Linux kernel before 3.19 does not ensure that an l2... |
| CVE-2017-8824 | HIGH | 7.8 | 1.4% | Dec 5, 2017 | The dccp_disconnect function in net/dccp/proto.c in the Linux kernel through 4.14.3 allows local users to gain privilege... |
| CVE-2017-16895 | HIGH | 7.8 | 1.0% | Dec 1, 2017 | The (1) arq_updater, (2) arqcommitter, (3) standardrestorer, (4) arqglacierrestorer, and (5) arqs3glacierrestorer helper... |
| CVE-2017-15701 | HIGH | 7.5 | 4.4% | Dec 1, 2017 | In Apache Qpid Broker-J versions 6.1.0 through 6.1.4 (inclusive) the broker does not properly enforce a maximum frame si... |
| CVE-2017-11286 | HIGH | 7.5 | 8.5% | Dec 1, 2017 | Adobe ColdFusion has an XML external entity (XXE) injection vulnerability. This affects Update 4 and earlier versions fo... |
| CVE-2017-1000405 | HIGH | 7 | 2.8% | Nov 30, 2017 | The Linux Kernel versions 2.6.38 through 4.14 have a problematic use of pmd_mkdirty() in the touch_pmd() function inside... |
| CVE-2017-17065 | HIGH | 7.5 | 1.4% | Nov 30, 2017 | An issue was discovered on D-Link DIR-605L Model B before FW2.11betaB06_hbrf devices, related to the code that handles t... |
| CVE-2017-17058 | HIGH | 7.5 | 23.7% | Nov 29, 2017 | The WooCommerce plugin through 3.x for WordPress has a Directory Traversal Vulnerability via a /wp-content/plugins/wooco... |
| CVE-2017-17053 | HIGH | 7 | 0.4% | Nov 29, 2017 | The init_new_context function in arch/x86/include/asm/mmu_context.h in the Linux kernel before 4.12.10 does not correctl... |
| CVE-2017-17052 | HIGH | 7.8 | 0.4% | Nov 29, 2017 | The mm_init function in kernel/fork.c in the Linux kernel before 4.12.10 does not clear the ->exe_file member of a new p... |
| CVE-2017-8001 | HIGH | 8.4 | 0.4% | Nov 28, 2017 | An issue was discovered in EMC ScaleIO 2.0.1.x. In a Linux environment, one of the support scripts saves the credentials... |
| CVE-2017-15275 | HIGH | 7.5 | 21.4% | Nov 27, 2017 | Samba before 4.7.3 might allow remote attackers to obtain sensitive information by leveraging failure of the server to c... |
| CVE-2017-4995 | HIGH | 8.1 | 2.5% | Nov 27, 2017 | An issue was discovered in Pivotal Spring Security 4.2.0.RELEASE through 4.2.2.RELEASE, and Spring Security 5.0.0.M1. Wh... |
| CVE-2017-16939 | HIGH | 7.8 | 2.1% | Nov 24, 2017 | The XFRM dump policy implementation in net/xfrm/xfrm_user.c in the Linux kernel before 4.13.11 allows local users to gai... |
| CVE-2017-16932 | HIGH | 7.5 | 5.9% | Nov 23, 2017 | parser.c in libxml2 before 2.9.5 does not prevent infinite recursion in parameter entities. |
| CVE-2017-16879 | HIGH | 7.8 | 2.4% | Nov 22, 2017 | Stack-based buffer overflow in the _nc_write_entry function in tinfo/write_entry.c in ncurses 6.0 allows attackers to ca... |
| CVE-2017-2718 | HIGH | 8.8 | 0.9% | Nov 22, 2017 | FusionSphere OpenStack with software V100R006C00 and V100R006C10RC2 has two command injection vulnerabilities due to the... |
| CVE-2017-2704 | HIGH | 7.5 | 0.6% | Nov 22, 2017 | Smarthome 1.0.2.364 and earlier versions,HiAPP 7.3.0.303 and earlier versions,HwParentControl 2.0.0 and earlier versions... |
| CVE-2017-5729 | HIGH | 7.4 | 1.3% | Nov 21, 2017 | Frame replay vulnerability in Wi-Fi subsystem in Intel Dual-Band and Tri-Band Wireless-AC Products allows remote attacke... |
| CVE-2017-5712 | HIGH | 7.2 | 4.4% | Nov 21, 2017 | Buffer overflow in Active Management Technology (AMT) in Intel Manageability Engine Firmware 8.x/9.x/10.x/11.0/11.5/11.6... |
| CVE-2017-5711 | HIGH | 7.8 | 0.6% | Nov 21, 2017 | Multiple buffer overflows in Active Management Technology (AMT) in Intel Manageability Engine Firmware 8.x/9.x/10.x/11.0... |
| CVE-2017-2919 | HIGH | 7.8 | 2.1% | Nov 20, 2017 | An exploitable stack based buffer overflow vulnerability exists in the xls_getfcell function of libxls 1.3.4. A speciall... |
| CVE-2017-2897 | HIGH | 7.8 | 2.1% | Nov 20, 2017 | An exploitable out-of-bounds write vulnerability exists in the read_MSAT function of libxls 1.4. A specially crafted XLS... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now