2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-17526Input.cc in Bernard Parisse Giac 1.2.3.57 does not validate strings before launching the program specified by the BROWSE...
CVE-2017-17525guiclient/guiclient.cpp in xTuple PostBooks 4.7.0 does not validate strings before launching the program specified by th...
CVE-2017-17524library/www_browser.pl in SWI-Prolog 7.2.3 does not validate strings before launching the program specified by the BROWS...
CVE-2017-17522Lib/webbrowser.py in Python through 3.6.3 does not validate strings before launching the program specified by the BROWSE...
CVE-2017-17521uiutil.c in FontForge through 20170731 does not validate strings before launching the program specified by the BROWSER e...
CVE-2017-17520HIGH8.8tools/url_handler.pl in TIN 2.4.1 does not validate strings before launching the program specified by the BROWSER enviro...
CVE-2017-17519batteriesConfig.mlp in OCaml Batteries Included (aka ocaml-batteries) 2.6 does not validate strings before launching the...
CVE-2017-17518swt/motif/browser.c in White_dune (aka whitedune) 0.30.10 does not validate strings before launching the program specifi...
CVE-2017-17517libsylph/utils.c in Sylpheed through 3.6 does not validate strings before launching the program specified by the BROWSER...
CVE-2017-17516scripts/inspect_webbrowser.py in Reddit Terminal Viewer (RTV) 1.19.0 does not validate strings before launching the prog...
CVE-2017-17515etc/ObjectList in Metview 4.7.3 does not validate strings before launching the program specified by the BROWSER environm...
CVE-2017-17514HIGH8.8boxes.c in nip2 8.4.0 does not validate strings before launching the program specified by the BROWSER environment variab...
CVE-2017-17513TeX Live through 20170524 does not validate strings before launching the program specified by the BROWSER environment va...
CVE-2017-17511KildClient 3.1.0 does not validate strings before launching the program specified by the BROWSER environment variable, w...
CVE-2017-5663In Apache Fineract 0.4.0-incubating, 0.5.0-incubating, and 0.6.0-incubating, an authenticated user with client/loan/cent...
CVE-2017-17684Panda Global Protection 17.0.1 allows a system crash via a 0xb3702c04 \\.\PSMEMDriver DeviceIoControl request.
CVE-2017-17683Panda Global Protection 17.0.1 allows a system crash via a 0xb3702c44 \\.\PSMEMDriver DeviceIoControl request.
CVE-2017-17682In ImageMagick 7.0.7-12 Q16, a large loop vulnerability was found in the function ExtractPostscript in coders/wpg.c, whi...
CVE-2017-17681In ImageMagick 7.0.7-12 Q16, an infinite loop vulnerability was found in the function ReadPSDChannelZip in coders/psd.c,...
CVE-2017-17680In ImageMagick 7.0.7-12 Q16, a memory leak vulnerability was found in the function ReadXPMImage in coders/xpm.c, which a...
CVE-2017-17672In vBulletin through 5.3.x, there is an unauthenticated deserialization vulnerability that leads to arbitrary file delet...
CVE-2017-17671CRITICAL9.8vBulletin through 5.3.x on Windows allows remote PHP code execution because a require_once call is reachable with an una...
CVE-2017-7738An Information Disclosure vulnerability in Fortinet FortiOS 5.6.0 to 5.6.2, 5.4.0 to 5.4.5, 5.2 and below versions allow...
CVE-2017-17669MEDIUM5.5There is a heap-based buffer over-read in the Exiv2::Internal::PngChunk::keyTXTChunk function of pngchunk_int.cpp in Exi...
CVE-2017-11305MEDIUM6.5A regression affecting Adobe Flash Player version 27.0.0.187 (and earlier versions) causes the unintended reset of the g...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now