2017 CVE Vulnerabilities

17,105 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-16648The dvb_frontend_free function in drivers/media/dvb-core/dvb_frontend.c in the Linux kernel through 4.13.11 allows local...
CVE-2017-16647drivers/net/usb/asix_devices.c in the Linux kernel through 4.13.11 allows local users to cause a denial of service (NULL...
CVE-2017-16646drivers/media/usb/dvb-usb/dib0700_devices.c in the Linux kernel through 4.13.11 allows local users to cause a denial of ...
CVE-2017-16645The ims_pcu_get_cdc_union_desc function in drivers/input/misc/ims-pcu.c in the Linux kernel through 4.13.11 allows local...
CVE-2017-16644The hdpvr_probe function in drivers/media/usb/hdpvr/hdpvr-core.c in the Linux kernel through 4.13.11 allows local users ...
CVE-2017-16643The parse_hid_report_descriptor function in drivers/input/tablet/gtco.c in the Linux kernel before 4.13.11 allows local ...
CVE-2017-16561/view/friend_profile.php in Ingenious School Management System 2.3.0 is vulnerable to Boolean-based and Time-based SQL i...
CVE-2017-16642In PHP before 5.6.32, 7.x before 7.0.25, and 7.1.x before 7.1.11, an error in the date extension's timelib_meridian hand...
CVE-2017-16641lib/rrd.php in Cacti 1.1.27 allows remote authenticated administrators to execute arbitrary OS commands via the path_rrd...
CVE-2017-2922CRITICAL9.8An exploitable memory corruption vulnerability exists in the Websocket protocol implementation of Cesanta Mongoose 6.8. ...
CVE-2017-2921CRITICAL9.8An exploitable memory corruption vulnerability exists in the Websocket protocol implementation of Cesanta Mongoose 6.8. ...
CVE-2017-2917HIGH8.8An exploitable vulnerability exists in the notifications functionality of Circle with Disney running firmware 2.0.1. Spe...
CVE-2017-2916HIGH8.8An exploitable vulnerability exists in the /api/CONFIG/restore functionality of Circle with Disney running firmware 2.0....
CVE-2017-2915HIGH8An exploitable vulnerability exists in the WiFi configuration functionality of Circle with Disney running firmware 2.0.1...
CVE-2017-2914HIGH8.1An exploitable authentication bypass vulnerability exists in the API daemon of Circle with Disney running firmware 2.0.1...
CVE-2017-2913MEDIUM5.9An exploitable vulnerability exists in the filtering functionality of Circle with Disney. SSL certificates for specific ...
CVE-2017-2912MEDIUM5.9An exploitable vulnerability exists in the remote control functionality of Circle with Disney running firmware 2.0.1. SS...
CVE-2017-2911MEDIUM5.9An exploitable vulnerability exists in the remote control functionality of Circle with Disney running firmware 2.0.1. SS...
CVE-2017-2909HIGH7.5An infinite loop programming error exists in the DNS server functionality of Cesanta Mongoose 6.8 library. A specially c...
CVE-2017-2898HIGH7.5An exploitable vulnerability exists in the signature verification of the firmware update functionality of Circle with Di...
CVE-2017-2895HIGH8.2An exploitable arbitrary memory read vulnerability exists in the MQTT packet parsing functionality of Cesanta Mongoose 6...
CVE-2017-2894CRITICAL9.8An exploitable stack buffer overflow vulnerability exists in the MQTT packet parsing functionality of Cesanta Mongoose 6...
CVE-2017-2893HIGH7.5An exploitable NULL pointer dereference vulnerability exists in the MQTT packet parsing functionality of Cesanta Mongoos...
CVE-2017-2892CRITICAL9.8An exploitable arbitrary memory read vulnerability exists in the MQTT packet parsing functionality of Cesanta Mongoose 6...
CVE-2017-2891CRITICAL9.8An exploitable use-after-free vulnerability exists in the HTTP server implementation of Cesanta Mongoose 6.8. An ordinar...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now