2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-6737 | HIGH | 8.8 | 42.6% | Jul 17, 2017 | A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the aff... |
| CVE-2017-6736 | HIGH | 8.8 | 70.6% | Jul 17, 2017 | The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabiliti... |
| CVE-2017-9814 | HIGH | 7.5 | 3.5% | Jul 17, 2017 | cairo-truetype-subset.c in cairo 1.15.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds ... |
| CVE-2017-3099 | HIGH | 8.8 | 8.6% | Jul 17, 2017 | Adobe Flash Player versions 26.0.0.131 and earlier have an exploitable memory corruption vulnerability in the Action Scr... |
| CVE-2017-2348 | HIGH | 7.5 | 1.3% | Jul 17, 2017 | The Juniper Enhanced jdhcpd daemon may experience high CPU utilization, or crash and restart upon receipt of an invalid ... |
| CVE-2017-2344 | HIGH | 7.8 | 0.5% | Jul 17, 2017 | A routine within an internal Junos OS sockets library is vulnerable to a buffer overflow. Malicious exploitation of this... |
| CVE-2017-2342 | HIGH | 8.1 | 0.6% | Jul 17, 2017 | MACsec feature on Juniper Networks Junos OS 15.1X49 prior to 15.1X49-D100 on SRX300 series does not report errors when a... |
| CVE-2017-2341 | HIGH | 8.8 | 0.4% | Jul 17, 2017 | An insufficient authentication vulnerability on platforms where Junos OS instances are run in a virtualized environment,... |
| CVE-2017-2339 | HIGH | 8.4 | 1.1% | Jul 17, 2017 | A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN ru... |
| CVE-2017-2338 | HIGH | 8.4 | 1.1% | Jul 17, 2017 | A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN ru... |
| CVE-2017-2337 | HIGH | 8.4 | 1.1% | Jul 17, 2017 | A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN ru... |
| CVE-2017-2335 | HIGH | 8.4 | 1.1% | Jul 17, 2017 | A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN ru... |
| CVE-2017-2314 | HIGH | 7.5 | 1.3% | Jul 17, 2017 | Receipt of a malformed BGP OPEN message may cause the routing protocol daemon (rpd) process to crash and restart. By con... |
| CVE-2017-10605 | HIGH | 8.6 | 1.6% | Jul 17, 2017 | On all vSRX and SRX Series devices, when the DHCP or DHCP relay is configured, specially crafted packet might cause the ... |
| CVE-2017-10603 | HIGH | 7 | 0.4% | Jul 17, 2017 | An XML injection vulnerability in Junos OS CLI can allow a locally authenticated user to elevate privileges and run arbi... |
| CVE-2017-10602 | HIGH | 7 | 0.4% | Jul 17, 2017 | A buffer overflow vulnerability in Junos OS CLI may allow a local authenticated user with read only privileges and acces... |
| CVE-2017-1000363 | HIGH | 7.8 | 0.6% | Jul 17, 2017 | Linux drivers/char/lp.c Out-of-Bounds Write. Due to a missing bounds check, and the fact that parport_ptr integer is sta... |
| CVE-2017-1000080 | HIGH | 7.5 | 1.0% | Jul 17, 2017 | Linux foundation ONOS 1.9.0 allows unauthenticated use of websockets. |
| CVE-2017-1000079 | HIGH | 7.5 | 1.3% | Jul 17, 2017 | Linux foundation ONOS 1.9.0 is vulnerable to a DoS. |
| CVE-2017-1000068 | HIGH | 7.5 | 1.8% | Jul 17, 2017 | TestTrack Server versions 1.0 and earlier are vulnerable to an authentication flaw in the split disablement feature resu... |
| CVE-2017-1000053 | HIGH | 8.1 | 1.9% | Jul 17, 2017 | Elixir Plug before v1.0.4, v1.1.7, v1.2.3 and v1.3.2 is vulnerable to arbitrary code execution in the deserialization fu... |
| CVE-2017-1000052 | HIGH | 7.8 | 0.4% | Jul 17, 2017 | Elixir Plug before v1.0.4, v1.1.7, v1.2.3 and v1.3.2 is vulnerable to null byte injection in the Plug.Static component, ... |
| CVE-2017-1000050 | HIGH | 7.5 | 3.3% | Jul 17, 2017 | JasPer 2.0.12 is vulnerable to a NULL pointer exception in the function jp2_encode which failed to check to see if the i... |
| CVE-2017-1000026 | HIGH | 7.5 | 1.9% | Jul 17, 2017 | Chef Software's mixlib-archive versions 0.3.0 and older are vulnerable to a directory traversal attack allowing attacker... |
| CVE-2017-1000010 | HIGH | 7.8 | 2.1% | Jul 17, 2017 | Audacity 2.1.2 through 2.3.2 is vulnerable to Dll HIjacking in the avformat-55.dll resulting arbitrary code execution. |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now