2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-2884 | HIGH | 7.5 | 1.4% | Nov 7, 2017 | An exploitable vulnerability exists in the user photo update functionality of Circle with Disney running firmware 2.0.1.... |
| CVE-2017-2883 | HIGH | 8.1 | 2.4% | Nov 7, 2017 | An exploitable vulnerability exists in the database update functionality of Circle with Disney running firmware 2.0.1. S... |
| CVE-2017-2882 | HIGH | 8.1 | 2.0% | Nov 7, 2017 | An exploitable vulnerability exists in the servers update functionality of Circle with Disney running firmware 2.0.1. Sp... |
| CVE-2017-2881 | HIGH | 8.8 | 0.8% | Nov 7, 2017 | An exploitable vulnerability exists in the torlist update functionality of Circle with Disney running firmware 2.0.1. Sp... |
| CVE-2017-2866 | HIGH | 8.8 | 3.1% | Nov 7, 2017 | An exploitable vulnerability exists in the /api/CONFIG/backup functionality of Circle with Disney. Specially crafted net... |
| CVE-2017-2865 | HIGH | 7.5 | 0.6% | Nov 7, 2017 | An exploitable vulnerability exists in the firmware update functionality of Circle with Disney. Specially crafted networ... |
| CVE-2017-12094 | HIGH | 7.4 | 0.9% | Nov 7, 2017 | An exploitable vulnerability exists in the WiFi Channel parsing of Circle with Disney running firmware 2.0.1. A speciall... |
| CVE-2017-12084 | HIGH | 8 | 1.0% | Nov 7, 2017 | A backdoor vulnerability exists in remote control functionality of Circle with Disney running firmware 2.0.1. A specific... |
| CVE-2017-6331 | HIGH | 7.1 | 1.7% | Nov 6, 2017 | Prior to SEP 14 RU1 Symantec Endpoint Protection product can encounter an issue of Tamper-Protection Bypass, which is a ... |
| CVE-2017-7425 | HIGH | 7.6 | 0.9% | Nov 6, 2017 | Multiple potential reflected XSS issues exist in NetIQ iManager versions before 2.7.7 Patch 10 HF2 and 3.0.3.2. |
| CVE-2017-16546 | HIGH | 8.8 | 2.2% | Nov 5, 2017 | The ReadWPGImage function in coders/wpg.c in ImageMagick 7.0.7-9 does not properly validate the colormap index in a WPG ... |
| CVE-2017-16526 | HIGH | 7.8 | 0.3% | Nov 4, 2017 | drivers/uwb/uwbd.c in the Linux kernel before 4.13.6 allows local users to cause a denial of service (general protection... |
| CVE-2017-16516 | HIGH | 7.5 | 3.8% | Nov 3, 2017 | In the yajl-ruby gem 1.3.0 for Ruby, when a crafted JSON file is supplied to Yajl::Parser.new.parse, the whole ruby proc... |
| CVE-2017-10873 | HIGH | 8.1 | 2.6% | Nov 2, 2017 | OpenAM (Open Source Edition) allows an attacker to bypass authentication and access unauthorized contents via unspecifie... |
| CVE-2017-1000256 | HIGH | 8.1 | 1.7% | Oct 31, 2017 | libvirt version 2.3.0 and later is vulnerable to a bad default configuration of "verify-peer=no" passed to QEMU by libvi... |
| CVE-2017-14919 | HIGH | 7.5 | 8.1% | Oct 30, 2017 | Node.js before 4.8.5, 6.x before 6.11.5, and 8.x before 8.8.0 allows remote attackers to cause a denial of service (unca... |
| CVE-2017-15951 | HIGH | 7.8 | 0.4% | Oct 28, 2017 | The KEYS subsystem in the Linux kernel before 4.13.10 does not correctly synchronize the actions of updating versus find... |
| CVE-2017-13090 | HIGH | 8.8 | 36.6% | Oct 27, 2017 | The retr.c:fd_read_body() function is called when processing OK responses. When the response is sent chunked in wget bef... |
| CVE-2017-13089 | HIGH | 8.8 | 79.9% | Oct 27, 2017 | The http.c:skip_short_body() function is called in some circumstances, such as when processing redirects. When the respo... |
| CVE-2017-5121 | HIGH | 8.8 | 5.3% | Oct 27, 2017 | Inappropriate use of JIT optimisation in V8 in Google Chrome prior to 61.0.3163.100 for Linux, Windows, and Mac allowed ... |
| CVE-2017-5116 | HIGH | 8.8 | 12.7% | Oct 27, 2017 | Type confusion in V8 in Google Chrome prior to 61.0.3163.79 for Mac, Windows, and Linux, and 61.0.3163.81 for Android, a... |
| CVE-2017-5114 | HIGH | 8.8 | 1.3% | Oct 27, 2017 | Inappropriate use of partition alloc in PDFium in Google Chrome prior to 61.0.3163.79 for Linux, Windows, and Mac, and 6... |
| CVE-2017-5113 | HIGH | 8.8 | 1.3% | Oct 27, 2017 | Math overflow in Skia in Google Chrome prior to 61.0.3163.79 for Mac, Windows, and Linux, and 61.0.3163.81 for Android, ... |
| CVE-2017-5111 | HIGH | 8.8 | 1.3% | Oct 27, 2017 | A use after free in PDFium in Google Chrome prior to 61.0.3163.79 for Linux, Windows, and Mac allowed a remote attacker ... |
| CVE-2017-5108 | HIGH | 8.8 | 1.5% | Oct 27, 2017 | Type confusion in PDFium in Google Chrome prior to 60.0.3112.78 for Mac, Windows, Linux, and Android allowed a remote at... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now