2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2017-7440MEDIUM6.5Kerio Connect 8.0.0 through 9.2.2, and Kerio Connect Client desktop application for Windows and Mac 9.2.0 through 9.2.2,...
CVE-2017-8339MEDIUM5.5PSKMAD.sys in Panda Free Antivirus 18.0 allows local users to cause a denial of service (BSoD) via a crafted DeviceIoCon...
CVE-2017-2134MEDIUM6.1Cross-site scripting vulnerability in ASSETBASE 8.0 and earlier allows remote attackers to inject arbitrary web script o...
CVE-2017-3008MEDIUM6.1Adobe ColdFusion 2016 Update 3 and earlier, ColdFusion 11 update 11 and earlier, ColdFusion 10 Update 22 and earlier hav...
CVE-2017-5046MEDIUM4.3V8 in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android had insufficient pol...
CVE-2017-5045MEDIUM6.1XSS Auditor in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android allowed det...
CVE-2017-5044MEDIUM6.3Heap buffer overflow in filter processing in Skia in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and...
CVE-2017-5042MEDIUM5.7Cast in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android sent cookies to si...
CVE-2017-5040MEDIUM4.3V8 in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android was missing a neuter...
CVE-2017-5038MEDIUM6.3Chrome Apps in Google Chrome prior to 57.0.2987.98 for Linux, Windows, and Mac had a use after free bug in GuestView, wh...
CVE-2017-5033MEDIUM4.3Blink in Google Chrome prior to 57.0.2987.98 for Mac, Windows, and Linux and 57.0.2987.108 for Android failed to correct...
CVE-2017-3600MEDIUM6.6Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Client mysqldump). Supported versions that ar...
CVE-2017-3577MEDIUM6.5Vulnerability in the PeopleSoft Enterprise CS Campus Community component of Oracle PeopleSoft Products (subcomponent: Fr...
CVE-2017-3571MEDIUM6.5Vulnerability in the PeopleSoft Enterprise SCM eBill Payment component of Oracle PeopleSoft Products (subcomponent: Secu...
CVE-2017-3464MEDIUM4.3Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are aff...
CVE-2017-3456MEDIUM4.9Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DML). Supported versions that are aff...
CVE-2017-3453MEDIUM6.5Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Optimizer). Supported versions that a...
CVE-2017-5160MEDIUM5.3An Inadequate Encryption Strength issue was discovered in Schneider Electric Wonderware InTouch Access Anywhere, version...
CVE-2017-2806MEDIUM4.3An exploitable arbitrary read exists in the XLS parsing of the Lexmark Perspective Document Filters conversion functiona...
CVE-2017-7718MEDIUM5.5hw/display/cirrus_vga_rop.h in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of ser...
CVE-2017-7938MEDIUM6.6Stack-based buffer overflow in DMitry (Deepmagic Information Gathering Tool) version 1.3a (Unix) allows attackers to cau...
CVE-2017-7188MEDIUM5.4Zurmo 3.1.1 Stable allows a Cross-Site Scripting (XSS) attack with a base64-encoded SCRIPT element within a data: URL in...
CVE-2017-7725MEDIUM6.1concrete5 8.1.0 places incorrect trust in the HTTP Host header during caching, if the administrator did not define a "ca...
CVE-2017-7697MEDIUM5.5In libsamplerate before 0.1.9, a buffer over-read occurs in the calc_output_single function in src_sinc.c via a crafted ...
CVE-2017-7377MEDIUM6The (1) v9fs_create and (2) v9fs_lcreate functions in hw/9pfs/9p.c in QEMU (aka Quick Emulator) allow local guest OS pri...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now