2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-17798 | — | — | 0.4% | Dec 20, 2017 | In TG Soft Vir.IT eXplorer Lite 8.5.42, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (... |
| CVE-2017-17797 | — | — | 0.4% | Dec 20, 2017 | In IKARUS anti.virus 2.16.20, the driver file (ntguard.SYS) allows local users to cause a denial of service (BSOD) or po... |
| CVE-2017-17796 | — | — | 0.4% | Dec 20, 2017 | In TG Soft Vir.IT eXplorer Lite 8.5.65, the driver file (VIRAGTLT.SYS) allows local users to cause a denial of service (... |
| CVE-2017-17795 | — | — | 0.4% | Dec 20, 2017 | In IKARUS anti.virus 2.16.20, the driver file (ntguard.SYS) allows local users to cause a denial of service (BSOD) or po... |
| CVE-2017-17794 | — | — | 1.5% | Dec 20, 2017 | validate_form_preferences in admin/preferences.php in BlogoText through 3.7.6 allows attackers to bypass intended access... |
| CVE-2017-17793 | — | — | 1.9% | Dec 20, 2017 | Information Disclosure vulnerability in creer_fichier_zip in admin/maintenance.php in BlogoText through 3.7.6 allows rem... |
| CVE-2017-17792 | — | — | 1.0% | Dec 20, 2017 | Cross site scripting (XSS) vulnerability in the markup_clean_href function in inc/conv.php in BlogoText through 3.7.6 al... |
| CVE-2017-17790 | — | — | 5.9% | Dec 20, 2017 | The lazy_initialize function in lib/resolv.rb in Ruby through 2.4.3 uses Kernel#open, which might allow Command Injectio... |
| CVE-2017-17789 | HIGH | 7.8 | 2.0% | Dec 20, 2017 | In GIMP 2.8.22, there is a heap-based buffer overflow in read_channel_data in plug-ins/common/file-psp.c. |
| CVE-2017-17788 | MEDIUM | 5.5 | 1.1% | Dec 20, 2017 | In GIMP 2.8.22, there is a stack-based buffer over-read in xcf_load_stream in app/xcf/xcf.c when there is no '\0' charac... |
| CVE-2017-17787 | HIGH | 7.8 | 1.1% | Dec 20, 2017 | In GIMP 2.8.22, there is a heap-based buffer over-read in read_creator_block in plug-ins/common/file-psp.c. |
| CVE-2017-17786 | HIGH | 7.8 | 1.3% | Dec 20, 2017 | In GIMP 2.8.22, there is a heap-based buffer over-read in ReadImage in plug-ins/common/file-tga.c (related to bgr2rgb.pa... |
| CVE-2017-17785 | HIGH | 7.8 | 1.2% | Dec 20, 2017 | In GIMP 2.8.22, there is a heap-based buffer overflow in the fli_read_brun function in plug-ins/file-fli/fli.c. |
| CVE-2017-17784 | HIGH | 7.8 | 1.5% | Dec 20, 2017 | In GIMP 2.8.22, there is a heap-based buffer over-read in load_image in plug-ins/common/file-gbr.c in the gbr import par... |
| CVE-2017-17783 | — | — | 1.5% | Dec 20, 2017 | In GraphicsMagick 1.3.27a, there is a buffer over-read in ReadPALMImage in coders/palm.c when QuantumDepth is 8. |
| CVE-2017-17782 | — | — | 1.8% | Dec 20, 2017 | In GraphicsMagick 1.3.27a, there is a heap-based buffer over-read in ReadOneJNGImage in coders/png.c, related to oFFs ch... |
| CVE-2017-17781 | — | — | — | Dec 20, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2017-17780 | MEDIUM | 6.1 | 1.0% | Dec 20, 2017 | The Clockwork SMS clockwork-test-message.php component has XSS via a crafted "to" parameter in a clockwork-test-message ... |
| CVE-2017-17779 | — | — | 1.1% | Dec 20, 2017 | Paid To Read Script 2.0.5 has SQL injection via the referrals.php id parameter. |
| CVE-2017-17778 | — | — | 0.5% | Dec 20, 2017 | Paid To Read Script 2.0.5 has XSS via the referrals.php tier parameter or the admin/userview.php uid parameter. |
| CVE-2017-17777 | — | — | 1.5% | Dec 20, 2017 | Paid To Read Script 2.0.5 has authentication bypass in the admin panel via a direct request, as demonstrated by the admi... |
| CVE-2017-17776 | — | — | 0.9% | Dec 20, 2017 | Paid To Read Script 2.0.5 has full path disclosure via an invalid admin/userview.php uid parameter. |
| CVE-2017-17775 | — | — | 0.7% | Dec 20, 2017 | Piwigo 2.9.2 has XSS via the name parameter in an admin.php?page=album-3-properties request. |
| CVE-2017-17774 | — | — | 0.6% | Dec 20, 2017 | admin/configuration.php in Piwigo 2.9.2 has CSRF. |
| CVE-2017-17763 | HIGH | 7.5 | 1.1% | Dec 19, 2017 | SuperBeam through 4.1.3, when using the LAN or WiFi Direct Share feature, does not use HTTPS or any integrity-protection... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now