2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-15746 | HIGH | 7.8 | 1.8% | Oct 22, 2017 | IrfanView 4.50 - 64bit with CADImage plugin version 12.0.0.5 allows attackers to cause a denial of service or possibly h... |
| CVE-2017-11292 | HIGH | 8.8 | 12.1% | Oct 22, 2017 | Adobe Flash Player version 27.0.0.159 and earlier has a flawed bytecode verification procedure, which allows for an untr... |
| CVE-2017-10955 | HIGH | 8.8 | 6.7% | Oct 19, 2017 | This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of EMC Data Protection ... |
| CVE-2017-10388 | HIGH | 7.5 | 3.2% | Oct 19, 2017 | Vulnerability in the Java SE, Java SE Embedded component of Oracle Java SE (subcomponent: Libraries). Supported versions... |
| CVE-2017-10309 | HIGH | 7.1 | 8.8% | Oct 19, 2017 | Vulnerability in the Java SE component of Oracle Java SE (subcomponent: Deployment). Supported versions that are affecte... |
| CVE-2017-10271 | HIGH | 7.5 | 100.0% | Oct 19, 2017 | Vulnerability in the Oracle WebLogic Server component of Oracle Fusion Middleware (subcomponent: WLS Security). Supporte... |
| CVE-2017-12271 | HIGH | 8.8 | 0.7% | Oct 19, 2017 | A vulnerability in Cisco SPA300 and SPA500 Series IP Phones could allow an unauthenticated, remote attacker to execute u... |
| CVE-2017-5531 | HIGH | 8 | 1.3% | Oct 17, 2017 | Deployments of TIBCO Managed File Transfer Command Center versions 8.0.0 and 8.0.1 and TIBCO Managed File Transfer Inter... |
| CVE-2017-0316 | HIGH | 7.8 | 0.3% | Oct 16, 2017 | In GeForce Experience (GFE) 3.x before 3.10.0.55, NVIDIA Installer Framework contains a vulnerability in NVISystemServic... |
| CVE-2017-15265 | HIGH | 7 | 0.4% | Oct 16, 2017 | Race condition in the ALSA subsystem in the Linux kernel before 4.13.8 allows local users to cause a denial of service (... |
| CVE-2017-15221 | HIGH | 7.8 | 5.5% | Oct 16, 2017 | ASX to MP3 converter 3.1.3.7.2010.11.05 has a buffer overflow via a crafted M3U file, a related issue to CVE-2009-1324. |
| CVE-2017-15363 | HIGH | 7.5 | 13.6% | Oct 15, 2017 | Directory traversal vulnerability in public/examples/resources/getsource.php in Luracast Restler through 3.0.0, as used ... |
| CVE-2017-10624 | HIGH | 7.5 | 0.4% | Oct 13, 2017 | Insufficient verification of node certificates in Juniper Networks Junos Space may allow a man-in-the-middle type of att... |
| CVE-2017-10623 | HIGH | 7.1 | 0.9% | Oct 13, 2017 | Lack of authentication and authorization of cluster messages in Juniper Networks Junos Space may allow a man-in-the-midd... |
| CVE-2017-10620 | HIGH | 7.4 | 0.6% | Oct 13, 2017 | Juniper Networks Junos OS on SRX series devices do not verify the HTTPS server certificate before downloading anti-virus... |
| CVE-2017-10619 | HIGH | 7.5 | 1.3% | Oct 13, 2017 | When Express Path (formerly known as service offloading) is configured on Juniper Networks SRX1400, SRX3400, SRX3600, SR... |
| CVE-2017-10612 | HIGH | 8 | 1.3% | Oct 13, 2017 | A persistent site scripting vulnerability in Juniper Networks Junos Space allows users who can change certain configurat... |
| CVE-2017-10610 | HIGH | 7.5 | 1.1% | Oct 13, 2017 | On SRX Series devices, a crafted ICMP packet embedded within a NAT64 IPv6 to IPv4 tunnel may cause the flowd process to ... |
| CVE-2017-10608 | HIGH | 7.5 | 1.0% | Oct 13, 2017 | Any Juniper Networks SRX series device with one or more ALGs enabled may experience a flowd crash when traffic is proces... |
| CVE-2017-10607 | HIGH | 7.5 | 1.0% | Oct 13, 2017 | Juniper Networks Junos OS 16.1R1, and services releases based off of 16.1R1, are vulnerable to the receipt of a crafted ... |
| CVE-2017-11826 | HIGH | 7.8 | 81.6% | Oct 13, 2017 | Microsoft Office 2010, SharePoint Enterprise Server 2010, SharePoint Server 2010, Web Applications, Office Web Apps Serv... |
| CVE-2017-11774 | HIGH | 7.8 | 59.9% | Oct 13, 2017 | Microsoft Outlook 2010 SP2, Outlook 2013 SP1 and RT SP1, and Outlook 2016 allow an attacker to execute arbitrary command... |
| CVE-2017-2888 | HIGH | 8.8 | 3.1% | Oct 11, 2017 | An exploitable integer overflow vulnerability exists when creating a new RGB Surface in SDL 2.0.5. A specially crafted f... |
| CVE-2017-2887 | HIGH | 8.8 | 2.7% | Oct 11, 2017 | An exploitable buffer overflow vulnerability exists in the XCF property handling functionality of SDL_image 2.0.1. A spe... |
| CVE-2017-12188 | HIGH | 7.8 | 0.4% | Oct 11, 2017 | arch/x86/kvm/mmu.c in the Linux kernel through 4.13.5, when nested virtualisation is used, does not properly traverse gu... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now