2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

Filter:HIGHClear
CVE IDSeverityCVSSDescription
CVE-2017-6737HIGH8.8A vulnerability in the SNMP implementation of could allow an authenticated, remote attacker to cause a reload of the aff...
CVE-2017-6736HIGH8.8The Simple Network Management Protocol (SNMP) subsystem of Cisco IOS and IOS XE Software contains multiple vulnerabiliti...
CVE-2017-9814HIGH7.5cairo-truetype-subset.c in cairo 1.15.6 and earlier allows remote attackers to cause a denial of service (out-of-bounds ...
CVE-2017-3099HIGH8.8Adobe Flash Player versions 26.0.0.131 and earlier have an exploitable memory corruption vulnerability in the Action Scr...
CVE-2017-2348HIGH7.5The Juniper Enhanced jdhcpd daemon may experience high CPU utilization, or crash and restart upon receipt of an invalid ...
CVE-2017-2344HIGH7.8A routine within an internal Junos OS sockets library is vulnerable to a buffer overflow. Malicious exploitation of this...
CVE-2017-2342HIGH8.1MACsec feature on Juniper Networks Junos OS 15.1X49 prior to 15.1X49-D100 on SRX300 series does not report errors when a...
CVE-2017-2341HIGH8.8An insufficient authentication vulnerability on platforms where Junos OS instances are run in a virtualized environment,...
CVE-2017-2339HIGH8.4A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN ru...
CVE-2017-2338HIGH8.4A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN ru...
CVE-2017-2337HIGH8.4A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN ru...
CVE-2017-2335HIGH8.4A persistent cross site scripting vulnerability in NetScreen WebUI of Juniper Networks Juniper NetScreen Firewall+VPN ru...
CVE-2017-2314HIGH7.5Receipt of a malformed BGP OPEN message may cause the routing protocol daemon (rpd) process to crash and restart. By con...
CVE-2017-10605HIGH8.6On all vSRX and SRX Series devices, when the DHCP or DHCP relay is configured, specially crafted packet might cause the ...
CVE-2017-10603HIGH7An XML injection vulnerability in Junos OS CLI can allow a locally authenticated user to elevate privileges and run arbi...
CVE-2017-10602HIGH7A buffer overflow vulnerability in Junos OS CLI may allow a local authenticated user with read only privileges and acces...
CVE-2017-1000363HIGH7.8Linux drivers/char/lp.c Out-of-Bounds Write. Due to a missing bounds check, and the fact that parport_ptr integer is sta...
CVE-2017-1000080HIGH7.5Linux foundation ONOS 1.9.0 allows unauthenticated use of websockets.
CVE-2017-1000079HIGH7.5Linux foundation ONOS 1.9.0 is vulnerable to a DoS.
CVE-2017-1000068HIGH7.5TestTrack Server versions 1.0 and earlier are vulnerable to an authentication flaw in the split disablement feature resu...
CVE-2017-1000053HIGH8.1Elixir Plug before v1.0.4, v1.1.7, v1.2.3 and v1.3.2 is vulnerable to arbitrary code execution in the deserialization fu...
CVE-2017-1000052HIGH7.8Elixir Plug before v1.0.4, v1.1.7, v1.2.3 and v1.3.2 is vulnerable to null byte injection in the Plug.Static component, ...
CVE-2017-1000050HIGH7.5JasPer 2.0.12 is vulnerable to a NULL pointer exception in the function jp2_encode which failed to check to see if the i...
CVE-2017-1000026HIGH7.5Chef Software's mixlib-archive versions 0.3.0 and older are vulnerable to a directory traversal attack allowing attacker...
CVE-2017-1000010HIGH7.8Audacity 2.1.2 through 2.3.2 is vulnerable to Dll HIjacking in the avformat-55.dll resulting arbitrary code execution.

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now