2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2017-20197HIGH7.3A vulnerability was found in propanetank Roommate-Bill-Tracking up to 288437f658fc9ee7d4b92a9da12557024d8bc55c. It has b...
CVE-2017-13323HIGH7.8In String16 of String16.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to loca...
CVE-2017-13319HIGH7.5In pvmp3_get_main_data_size of pvmp3_get_main_data_size.cpp, there is a possible buffer overread due to a missing bounds...
CVE-2017-13316HIGH7.8In checkPermissions of RecognitionService.java, there is a possible permissions bypass due to a missing permission check...
CVE-2017-18153HIGH7A race condition exists in a driver potentially leading to a use-after-free condition.
CVE-2017-15832HIGH7.8Buffer overwrite in the WLAN host driver by leveraging a compromised WLAN FW
CVE-2017-9711HIGH7.8Certain unprivileged processes are able to perform IOCTL calls.
CVE-2017-13315HIGH7.8In writeToParcel and createFromParcel of DcParamObject.java, there is a permission bypass due to a write size mismatch. ...
CVE-2017-13314HIGH7.8In setAllowOnlyVpnForUids of NetworkManagementService.java, there is a possible security settings bypass due to a missin...
CVE-2017-13312HIGH7.8In createFromParcel of MediaCas.java, there is a possible parcel read/write mismatch due to improper input validation. T...
CVE-2017-13310HIGH7.8In createFromParcel of ViewPager.java, there is a possible read/write serialization issue leading to a permissions bypas...
CVE-2017-7252HIGH7.5bcrypt password hashing in Botan before 2.1.0 does not correctly handle passwords with a length between 57 and 72 charac...
CVE-2017-20186HIGH7.5** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in nikooo777 ckSurf up to 1.19.2. It has been declared as prob...
CVE-2017-20184HIGH7.5Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Carlo Gavazzi Powersoft ...
CVE-2017-11197HIGH7.8In CyberArk Viewfinity 5.5.10.95 and 6.x before 6.1.1.220, a low privilege user can escalate to an administrative user v...
CVE-2017-6894HIGH7.8A vulnerability exists in FlexNet Manager Suite releases 2015 R2 SP3 and earlier (including FlexNet Manager Platform 9.2...
CVE-2017-20180HIGH7.5A vulnerability classified as critical has been found in Zerocoin libzerocoin. Affected is the function CoinSpend::CoinS...
CVE-2017-20178HIGH7.5** UNSUPPORTED WHEN ASSIGNED ** A vulnerability was found in Codiad 2.8.0. It has been rated as problematic. Affected by...
CVE-2017-5242HIGH7.7Nexpose and InsightVM virtual appliances downloaded between April 5th, 2017 and May 3rd, 2017 contain identical SSH host...
CVE-2017-14454HIGH8.5Multiple exploitable buffer overflow vulnerabilities exists in the PubNub message handler for the "control" channel of I...
CVE-2017-16261HIGH8.8Multiple exploitable buffer overflow vulnerabilities exist in the PubNub message handler for the "cc" channel of Insteon...
CVE-2017-20165HIGH7.5A vulnerability classified as problematic has been found in debug-js debug up to 3.0.x. This affects the function useCol...
CVE-2017-20161HIGH7.8A vulnerability classified as problematic has been found in rofl0r MacGeiger. Affected is the function dump_wlan_at of t...
CVE-2017-20154HIGH7.5A vulnerability was found in ghostlander Phoenixcoin. It has been classified as problematic. Affected is the function CT...
CVE-2017-20152HIGH7.5A vulnerability, which was classified as problematic, was found in aerouk imageserve. Affected is an unknown function of...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now