2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-17526 | — | — | 1.2% | Dec 14, 2017 | Input.cc in Bernard Parisse Giac 1.2.3.57 does not validate strings before launching the program specified by the BROWSE... |
| CVE-2017-17525 | — | — | 1.2% | Dec 14, 2017 | guiclient/guiclient.cpp in xTuple PostBooks 4.7.0 does not validate strings before launching the program specified by th... |
| CVE-2017-17524 | — | — | 1.2% | Dec 14, 2017 | library/www_browser.pl in SWI-Prolog 7.2.3 does not validate strings before launching the program specified by the BROWS... |
| CVE-2017-17522 | — | — | 3.6% | Dec 14, 2017 | Lib/webbrowser.py in Python through 3.6.3 does not validate strings before launching the program specified by the BROWSE... |
| CVE-2017-17521 | — | — | 1.8% | Dec 14, 2017 | uiutil.c in FontForge through 20170731 does not validate strings before launching the program specified by the BROWSER e... |
| CVE-2017-17520 | HIGH | 8.8 | 1.9% | Dec 14, 2017 | tools/url_handler.pl in TIN 2.4.1 does not validate strings before launching the program specified by the BROWSER enviro... |
| CVE-2017-17519 | — | — | 1.2% | Dec 14, 2017 | batteriesConfig.mlp in OCaml Batteries Included (aka ocaml-batteries) 2.6 does not validate strings before launching the... |
| CVE-2017-17518 | — | — | 1.7% | Dec 14, 2017 | swt/motif/browser.c in White_dune (aka whitedune) 0.30.10 does not validate strings before launching the program specifi... |
| CVE-2017-17517 | — | — | 1.2% | Dec 14, 2017 | libsylph/utils.c in Sylpheed through 3.6 does not validate strings before launching the program specified by the BROWSER... |
| CVE-2017-17516 | — | — | 1.2% | Dec 14, 2017 | scripts/inspect_webbrowser.py in Reddit Terminal Viewer (RTV) 1.19.0 does not validate strings before launching the prog... |
| CVE-2017-17515 | — | — | 1.6% | Dec 14, 2017 | etc/ObjectList in Metview 4.7.3 does not validate strings before launching the program specified by the BROWSER environm... |
| CVE-2017-17514 | HIGH | 8.8 | 1.7% | Dec 14, 2017 | boxes.c in nip2 8.4.0 does not validate strings before launching the program specified by the BROWSER environment variab... |
| CVE-2017-17513 | — | — | 1.3% | Dec 14, 2017 | TeX Live through 20170524 does not validate strings before launching the program specified by the BROWSER environment va... |
| CVE-2017-17511 | — | — | 1.7% | Dec 14, 2017 | KildClient 3.1.0 does not validate strings before launching the program specified by the BROWSER environment variable, w... |
| CVE-2017-5663 | — | — | 2.1% | Dec 14, 2017 | In Apache Fineract 0.4.0-incubating, 0.5.0-incubating, and 0.6.0-incubating, an authenticated user with client/loan/cent... |
| CVE-2017-17684 | — | — | 1.1% | Dec 14, 2017 | Panda Global Protection 17.0.1 allows a system crash via a 0xb3702c04 \\.\PSMEMDriver DeviceIoControl request. |
| CVE-2017-17683 | — | — | 1.1% | Dec 14, 2017 | Panda Global Protection 17.0.1 allows a system crash via a 0xb3702c44 \\.\PSMEMDriver DeviceIoControl request. |
| CVE-2017-17682 | — | — | 3.0% | Dec 14, 2017 | In ImageMagick 7.0.7-12 Q16, a large loop vulnerability was found in the function ExtractPostscript in coders/wpg.c, whi... |
| CVE-2017-17681 | — | — | 3.0% | Dec 14, 2017 | In ImageMagick 7.0.7-12 Q16, an infinite loop vulnerability was found in the function ReadPSDChannelZip in coders/psd.c,... |
| CVE-2017-17680 | — | — | 2.3% | Dec 14, 2017 | In ImageMagick 7.0.7-12 Q16, a memory leak vulnerability was found in the function ReadXPMImage in coders/xpm.c, which a... |
| CVE-2017-17672 | — | — | 14.9% | Dec 14, 2017 | In vBulletin through 5.3.x, there is an unauthenticated deserialization vulnerability that leads to arbitrary file delet... |
| CVE-2017-17671 | CRITICAL | 9.8 | 3.0% | Dec 14, 2017 | vBulletin through 5.3.x on Windows allows remote PHP code execution because a require_once call is reachable with an una... |
| CVE-2017-7738 | — | — | 1.2% | Dec 13, 2017 | An Information Disclosure vulnerability in Fortinet FortiOS 5.6.0 to 5.6.2, 5.4.0 to 5.4.5, 5.2 and below versions allow... |
| CVE-2017-17669 | MEDIUM | 5.5 | 1.6% | Dec 13, 2017 | There is a heap-based buffer over-read in the Exiv2::Internal::PngChunk::keyTXTChunk function of pngchunk_int.cpp in Exi... |
| CVE-2017-11305 | MEDIUM | 6.5 | 3.6% | Dec 13, 2017 | A regression affecting Adobe Flash Player version 27.0.0.187 (and earlier versions) causes the unintended reset of the g... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now