2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-12885 | — | — | 0.9% | May 10, 2019 | OX Software GmbH App Suite 7.8.4 and earlier is affected by: Cross Site Scripting (XSS). |
| CVE-2017-12795 | — | — | 2.3% | May 10, 2019 | OpenMRS openmrs-module-htmlformentry 3.3.2 is affected by: (Improper Input Validation). |
| CVE-2017-12789 | — | — | 0.7% | May 10, 2019 | Metinfo 5.3.18 is affected by: Cross Site Request Forgery (CSRF). The impact is: Information Disclosure (remote). The co... |
| CVE-2017-12761 | — | — | 2.5% | May 9, 2019 | http://codecanyon.net/user/Endober WebFile Explorer 1.0 is affected by: SQL Injection. The impact is: Arbitrary File Dow... |
| CVE-2017-12760 | — | — | 2.3% | May 9, 2019 | Ynet Interactive - http://demo.ynetinteractive.com/mobiketa/ Mobiketa 4.0 is affected by: SQL Injection. The impact is: ... |
| CVE-2017-12759 | — | — | 3.6% | May 9, 2019 | Ynet Interactive - http://demo.ynetinteractive.com/soa/ SOA School Management 3.0 is affected by: SQL Injection. The imp... |
| CVE-2017-12758 | — | — | 3.1% | May 9, 2019 | https://www.joomlaextensions.co.in/ Joomla! Component Appointment 1.1 is affected by: SQL Injection. The impact is: Code... |
| CVE-2017-12757 | — | — | 3.6% | May 9, 2019 | Certain Ambit Technologies Pvt. Ltd products are affected by: SQL Injection. This affects iTech B2B Script 4.42i and Tec... |
| CVE-2017-12839 | — | — | 2.9% | May 9, 2019 | A heap-based buffer over-read in the getbits function in src/libmpg123/getbits.h in mpg123 through 1.25.5 allows remote ... |
| CVE-2017-12790 | — | — | 0.7% | May 9, 2019 | Metinfo 5.3.18 is affected by: Cross Site Request Forgery (CSRF). The impact is: Information Disclosure (remote). The co... |
| CVE-2017-12778 | — | — | 0.5% | May 9, 2019 | The UI Lock feature in qBittorrent version 3.3.15 is vulnerable to Authentication Bypass, which allows Attack to gain un... |
| CVE-2017-12806 | — | — | 2.9% | May 9, 2019 | In ImageMagick 7.0.6-6, a memory exhaustion vulnerability was found in the function format8BIM, which allows attackers t... |
| CVE-2017-12805 | — | — | 2.9% | May 9, 2019 | In ImageMagick 7.0.6-6, a memory exhaustion vulnerability was found in the function ReadTIFFImage, which allows attacker... |
| CVE-2017-12804 | — | — | 1.5% | May 9, 2019 | The iwgif_init_screen function in imagew-gif.c:510 in ImageWorsener 1.3.2 allows remote attackers to cause a denial of s... |
| CVE-2017-12788 | — | — | 1.1% | May 9, 2019 | Multiple cross-site scripting (XSS) vulnerabilities in admin/index.php in Metinfo 5.3.18 allows remote attackers to inje... |
| CVE-2017-18278 | — | — | 0.2% | May 6, 2019 | An integer underflow may occur due to lack of check when received data length from font_mgr_qsee_request_service is bigg... |
| CVE-2017-18276 | — | — | 0.3% | May 6, 2019 | Secure camera logic allows display/secure camera controllers to access HLOS memory during secure display or camera sessi... |
| CVE-2017-18275 | — | — | 0.2% | May 6, 2019 | A new account can be inserted into simContacts service using Android command line tool in Snapdragon Automobile, Snapdra... |
| CVE-2017-18274 | — | — | 0.2% | May 6, 2019 | While iterating through the models contained in a fixed-size array in the actData structure, which also stores an incorr... |
| CVE-2017-18173 | — | — | 0.2% | May 6, 2019 | In case of using an invalid android verified boot signature with very large length, an integer underflow occurs in Snapd... |
| CVE-2017-18157 | — | — | 0.2% | May 6, 2019 | A Use After Free Condition can occur in Thermal Engine in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in M... |
| CVE-2017-18156 | — | — | 0.2% | May 6, 2019 | While processing camera buffers in camera driver, a use after free condition can occur in Snapdragon Automobile, Snapdra... |
| CVE-2017-18131 | — | — | 0.2% | May 6, 2019 | In QTEE, an incorrect fuse value can be blown in Snapdragon Automobile, Snapdragon Mobile, Snapdragon Wear in version MD... |
| CVE-2017-15841 | — | — | 0.2% | May 6, 2019 | When HOST sends a Special command ID packet, Controller triggers a RAM Dump and FW reset in Snapdragon Mobile in version... |
| CVE-2017-18374 | — | — | 5.5% | May 2, 2019 | The ZyXEL P660HN-T1A v1 TCLinux Fw $7.3.15.0 v001 / 3.40(ULM.0)b31 router distributed by TrueOnline has two user account... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now