2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2017-15746HIGH7.8IrfanView 4.50 - 64bit with CADImage plugin version 12.0.0.5 allows attackers to cause a denial of service or possibly h...
CVE-2017-11292HIGH8.8Adobe Flash Player version 27.0.0.159 and earlier has a flawed bytecode verification procedure, which allows for an untr...
CVE-2017-10955HIGH8.8This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of EMC Data Protection ...
CVE-2017-10388HIGH7.5Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions...
CVE-2017-10309HIGH7.1Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). Supported versions that are affecte...
CVE-2017-10271HIGH7.5Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Security). Supporte...
CVE-2017-12271HIGH8.8A vulnerability in Cisco SPA300 and SPA500 Series IP Phones could allow an unauthenticated, remote attacker to execute u...
CVE-2017-5531HIGH8Deployments of TIBCO Managed File Transfer Command Center versions 8.0.0 and 8.0.1 and TIBCO Managed File Transfer Inter...
CVE-2017-0316HIGH7.8In GeForce Experience (GFE) 3.x before 3.10.0.55, NVIDIA Installer Framework contains a vulnerability in NVISystemServic...
CVE-2017-15265HIGH7Race condition in the ALSA subsystem in the Linux kernel before 4.13.8 allows local users to cause a denial of service (...
CVE-2017-15221HIGH7.8ASX to MP3 converter 3.1.3.7.2010.11.05 has a buffer overflow via a crafted M3U file, a related issue to CVE-2009-1324.
CVE-2017-15363HIGH7.5Directory traversal vulnerability in public/examples/resources/getsource.php in Luracast Restler through 3.0.0, as used ...
CVE-2017-10624HIGH7.5Insufficient verification of node certificates in Juniper Networks Junos Space may allow a man-in-the-middle type of att...
CVE-2017-10623HIGH7.1Lack of authentication and authorization of cluster messages in Juniper Networks Junos Space may allow a man-in-the-midd...
CVE-2017-10620HIGH7.4Juniper Networks Junos OS on SRX series devices do not verify the HTTPS server certificate before downloading anti-virus...
CVE-2017-10619HIGH7.5When Express Path (formerly known as service offloading) is configured on Juniper Networks SRX1400, SRX3400, SRX3600, SR...
CVE-2017-10612HIGH8A persistent site scripting vulnerability in Juniper Networks Junos Space allows users who can change certain configurat...
CVE-2017-10610HIGH7.5On SRX Series devices, a crafted ICMP packet embedded within a NAT64 IPv6 to IPv4 tunnel may cause the flowd process to ...
CVE-2017-10608HIGH7.5Any Juniper Networks SRX series device with one or more ALGs enabled may experience a flowd crash when traffic is proces...
CVE-2017-10607HIGH7.5Juniper Networks Junos OS 16.1R1, and services releases based off of 16.1R1, are vulnerable to the receipt of a crafted ...
CVE-2017-11826HIGH7.8Microsoft Office 2010, SharePoint Enterprise Server 2010, SharePoint Server 2010, Web Applications, Office Web Apps Serv...
CVE-2017-11774HIGH7.8Microsoft Outlook 2010 SP2, Outlook 2013 SP1 and RT SP1, and Outlook 2016 allow an attacker to execute arbitrary command...
CVE-2017-2888HIGH8.8An exploitable integer overflow vulnerability exists when creating a new RGB Surface in SDL 2.0.5. A specially crafted f...
CVE-2017-2887HIGH8.8An exploitable buffer overflow vulnerability exists in the XCF property handling functionality of SDL_image 2.0.1. A spe...
CVE-2017-12188HIGH7.8arch/x86/kvm/mmu.c in the Linux kernel through 4.13.5, when nested virtualisation is used, does not properly traverse gu...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now