2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-0022 | MEDIUM | 6.5 | 18.1% | Mar 17, 2017 | Microsoft XML Core Services (MSXML) in Windows 10 Gold, 1511, and 1607; Windows 7 SP1; Windows 8.1; Windows RT 8.1; Wind... |
| CVE-2017-5857 | MEDIUM | 6.5 | 0.4% | Mar 16, 2017 | Memory leak in the virgl_cmd_resource_unref function in hw/display/virtio-gpu-3d.c in QEMU (aka Quick Emulator) allows l... |
| CVE-2017-5856 | MEDIUM | 6.5 | 0.4% | Mar 16, 2017 | Memory leak in the megasas_handle_dcmd function in hw/scsi/megasas.c in QEMU (aka Quick Emulator) allows local guest OS ... |
| CVE-2017-5667 | MEDIUM | 6.5 | 0.4% | Mar 16, 2017 | The sdhci_sdma_transfer_multi_blocks function in hw/sd/sdhci.c in QEMU (aka Quick Emulator) allows local guest OS privil... |
| CVE-2017-5898 | MEDIUM | 5.5 | 0.4% | Mar 15, 2017 | Integer overflow in the emulated_apdu_from_guest function in usb/dev-smartcard-reader.c in Quick Emulator (Qemu), when b... |
| CVE-2017-5579 | MEDIUM | 6.5 | 0.4% | Mar 15, 2017 | Memory leak in the serial_exit_core function in hw/char/serial.c in QEMU (aka Quick Emulator) allows local guest OS priv... |
| CVE-2017-5578 | MEDIUM | 6.5 | 0.4% | Mar 15, 2017 | Memory leak in the virtio_gpu_resource_attach_backing function in hw/display/virtio-gpu.c in QEMU (aka Quick Emulator) a... |
| CVE-2017-5552 | MEDIUM | 6.5 | 0.4% | Mar 15, 2017 | Memory leak in the virgl_resource_attach_backing function in hw/display/virtio-gpu-3d.c in QEMU (aka Quick Emulator) all... |
| CVE-2017-5526 | MEDIUM | 6.5 | 0.4% | Mar 15, 2017 | Memory leak in hw/audio/es1370.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial o... |
| CVE-2017-5525 | MEDIUM | 6.5 | 0.4% | Mar 15, 2017 | Memory leak in hw/audio/ac97.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of ... |
| CVE-2017-6505 | MEDIUM | 6.5 | 0.4% | Mar 15, 2017 | The ohci_service_ed_list function in hw/usb/hcd-ohci.c in QEMU (aka Quick Emulator) before 2.9.0 allows local guest OS u... |
| CVE-2017-6414 | MEDIUM | 6.5 | 0.4% | Mar 15, 2017 | Memory leak in the vcard_apdu_new function in card_7816.c in libcacard before 2.5.3 allows local guest OS users to cause... |
| CVE-2017-6386 | MEDIUM | 6.5 | 0.4% | Mar 15, 2017 | Memory leak in the vrend_create_vertex_elements_state function in vrend_renderer.c in virglrenderer allows local guest O... |
| CVE-2017-3000 | MEDIUM | 6.5 | 8.4% | Mar 14, 2017 | Adobe Flash Player versions 24.0.0.221 and earlier have a vulnerability in the random number generator used for constant... |
| CVE-2017-5957 | MEDIUM | 5.5 | 0.4% | Mar 14, 2017 | Stack-based buffer overflow in the vrend_decode_set_framebuffer_state function in vrend_decode.c in virglrenderer before... |
| CVE-2017-6314 | MEDIUM | 5.5 | 1.9% | Mar 10, 2017 | The make_available_at_least function in io-tiff.c in gdk-pixbuf allows context-dependent attackers to cause a denial of ... |
| CVE-2017-6312 | MEDIUM | 5.5 | 2.0% | Mar 10, 2017 | Integer overflow in io-ico.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (segmentation... |
| CVE-2017-6511 | MEDIUM | 6.1 | 0.7% | Mar 7, 2017 | andrzuk/FineCMS before 2017-03-06 is vulnerable to a reflected XSS in index.php because of missing validation of the act... |
| CVE-2017-6491 | MEDIUM | 6.1 | 0.8% | Mar 5, 2017 | Multiple Cross-Site Scripting (XSS) issues were discovered in EPESI 1.8.1.1. The vulnerabilities exist due to insufficie... |
| CVE-2017-6490 | MEDIUM | 6.1 | 0.8% | Mar 5, 2017 | Multiple Cross-Site Scripting (XSS) issues were discovered in EPESI 1.8.1.1. The vulnerabilities exist due to insufficie... |
| CVE-2017-6489 | MEDIUM | 6.1 | 0.8% | Mar 5, 2017 | Multiple Cross-Site Scripting (XSS) issues were discovered in EPESI 1.8.1.1. The vulnerabilities exist due to insufficie... |
| CVE-2017-6488 | MEDIUM | 6.1 | 0.8% | Mar 5, 2017 | Multiple Cross-Site Scripting (XSS) issues were discovered in EPESI 1.8.1.1. The vulnerabilities exist due to insufficie... |
| CVE-2017-6487 | MEDIUM | 6.1 | 0.8% | Mar 5, 2017 | Multiple Cross-Site Scripting (XSS) issues were discovered in EPESI 1.8.1.1. The vulnerabilities exist due to insufficie... |
| CVE-2017-6484 | MEDIUM | 6.1 | 0.7% | Mar 5, 2017 | Multiple Cross-Site Scripting (XSS) issues were discovered in INTER-Mediator 5.5. The vulnerabilities exist due to insuf... |
| CVE-2017-6478 | MEDIUM | 6.1 | 2.6% | Mar 5, 2017 | paintballrefjosh/MaNGOSWebV4 before 4.0.8 is vulnerable to a reflected XSS in install/index.php (step parameter). |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now