2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-11832 | — | — | 2.1% | Nov 15, 2017 | The Microsoft Windows embedded OpenType (EOT) font engine in Windows 7 SP1, Windows Server 2008 SP2 and 2008 R2 SP1, and... |
| CVE-2017-11831 | — | — | 3.3% | Nov 15, 2017 | Windows kernel in Windows 7 SP1, Windows 8.1 and RT 8.1, Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 and R2,... |
| CVE-2017-11830 | — | — | 2.6% | Nov 15, 2017 | Device Guard in Windows 10 Gold, 1511, 1607, 1703, and 1709, Windows Server 2016, and Windows Server, version 1709 allow... |
| CVE-2017-11827 | — | — | 7.6% | Nov 15, 2017 | Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server... |
| CVE-2017-11803 | — | — | 5.9% | Nov 15, 2017 | Microsoft Edge in Microsoft Windows 10 1703, 1709 and Windows Server, version 1709 allows an attacker to obtain informat... |
| CVE-2017-11791 | — | — | 5.5% | Nov 15, 2017 | ChakraCore and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows... |
| CVE-2017-11788 | — | — | 7.9% | Nov 15, 2017 | Windows Search in Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 and R2,... |
| CVE-2017-11770 | — | — | 5.4% | Nov 15, 2017 | .NET Core 1.0, 1.1, and 2.0 allow an unauthenticated attacker to remotely cause a denial of service attack against a .NE... |
| CVE-2017-11768 | — | — | 6.4% | Nov 15, 2017 | Windows Media Player in Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and RT 8.1, Windows Server 2012 a... |
| CVE-2017-10278 | — | — | 1.0% | Nov 14, 2017 | Vulnerability in the Oracle Tuxedo component of Oracle Fusion Middleware (subcomponent: Security). Supported versions th... |
| CVE-2017-10272 | — | — | 1.2% | Nov 14, 2017 | Vulnerability in the Oracle Tuxedo component of Oracle Fusion Middleware (subcomponent: Core). Supported versions that a... |
| CVE-2017-10269 | — | — | 2.1% | Nov 14, 2017 | Vulnerability in the Oracle Tuxedo component of Oracle Fusion Middleware (subcomponent: Core). Supported versions that a... |
| CVE-2017-10267 | — | — | 1.5% | Nov 14, 2017 | Vulnerability in the Oracle Tuxedo component of Oracle Fusion Middleware (subcomponent: Core). Supported versions that a... |
| CVE-2017-10266 | — | — | 1.1% | Nov 14, 2017 | Vulnerability in the Oracle Tuxedo component of Oracle Fusion Middleware (subcomponent: Core). Supported versions that a... |
| CVE-2017-9394 | — | — | 0.6% | Nov 14, 2017 | A stored cross-site scripting vulnerability in CA Identity Governance 12.6 allows remote authenticated attackers to disp... |
| CVE-2017-9371 | LOW | 2.6 | 0.8% | Nov 14, 2017 | In BlackBerry QNX Software Development Platform (SDP) 6.6.0 and 6.5.0 SP1 and earlier, a loss of integrity vulnerability... |
| CVE-2017-9369 | LOW | 3.8 | 0.6% | Nov 14, 2017 | In BlackBerry QNX Software Development Platform (SDP) 6.6.0 and 6.5.0 SP1 and earlier, an information disclosure vulnera... |
| CVE-2017-3893 | LOW | 1.9 | 0.5% | Nov 14, 2017 | In BlackBerry QNX Software Development Platform (SDP) 6.6.0, the default configuration of the QNX SDP system did not in ... |
| CVE-2017-3892 | LOW | 3.8 | 0.8% | Nov 14, 2017 | In BlackBerry QNX Software Development Platform (SDP) 6.6.0, an information disclosure vulnerability in the default conf... |
| CVE-2017-3891 | CRITICAL | 9.6 | 1.3% | Nov 14, 2017 | In BlackBerry QNX Software Development Platform (SDP) 6.6.0, an elevation of privilege vulnerability in the default conf... |
| CVE-2017-16820 | — | — | 4.0% | Nov 14, 2017 | The csnmp_read_table function in snmp.c in the SNMP plugin in collectd before 5.6.3 is susceptible to a double free in a... |
| CVE-2017-12636 | — | — | 90.6% | Nov 14, 2017 | CouchDB administrative users can configure the database server via HTTP(S). Some of the configuration options include pa... |
| CVE-2017-12635 | — | — | 99.8% | Nov 14, 2017 | Due to differences in the Erlang-based JSON parser and JavaScript-based JSON parser, it is possible in Apache CouchDB be... |
| CVE-2017-16815 | — | — | 1.0% | Nov 14, 2017 | installer.php in the Snap Creek Duplicator (WordPress Site Migration & Backup) plugin before 1.2.30 for WordPress has XS... |
| CVE-2017-9085 | — | — | 0.9% | Nov 14, 2017 | Multiple cross-site scripting (XSS) vulnerabilities in Kodak InSite 6.5 to 8.0 allow remote attackers to inject arbitrar... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now