2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2017-0022MEDIUM6.5Microsoft XML Core Services (MSXML) in Windows 10 Gold, 1511, and 1607; Windows 7 SP1; Windows 8.1; Windows RT 8.1; Wind...
CVE-2017-5857MEDIUM6.5Memory leak in the virgl_cmd_resource_unref function in hw/display/virtio-gpu-3d.c in QEMU (aka Quick Emulator) allows l...
CVE-2017-5856MEDIUM6.5Memory leak in the megasas_handle_dcmd function in hw/scsi/megasas.c in QEMU (aka Quick Emulator) allows local guest OS ...
CVE-2017-5667MEDIUM6.5The sdhci_sdma_transfer_multi_blocks function in hw/sd/sdhci.c in QEMU (aka Quick Emulator) allows local guest OS privil...
CVE-2017-5898MEDIUM5.5Integer overflow in the emulated_apdu_from_guest function in usb/dev-smartcard-reader.c in Quick Emulator (Qemu), when b...
CVE-2017-5579MEDIUM6.5Memory leak in the serial_exit_core function in hw/char/serial.c in QEMU (aka Quick Emulator) allows local guest OS priv...
CVE-2017-5578MEDIUM6.5Memory leak in the virtio_gpu_resource_attach_backing function in hw/display/virtio-gpu.c in QEMU (aka Quick Emulator) a...
CVE-2017-5552MEDIUM6.5Memory leak in the virgl_resource_attach_backing function in hw/display/virtio-gpu-3d.c in QEMU (aka Quick Emulator) all...
CVE-2017-5526MEDIUM6.5Memory leak in hw/audio/es1370.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial o...
CVE-2017-5525MEDIUM6.5Memory leak in hw/audio/ac97.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of ...
CVE-2017-6505MEDIUM6.5The ohci_service_ed_list function in hw/usb/hcd-ohci.c in QEMU (aka Quick Emulator) before 2.9.0 allows local guest OS u...
CVE-2017-6414MEDIUM6.5Memory leak in the vcard_apdu_new function in card_7816.c in libcacard before 2.5.3 allows local guest OS users to cause...
CVE-2017-6386MEDIUM6.5Memory leak in the vrend_create_vertex_elements_state function in vrend_renderer.c in virglrenderer allows local guest O...
CVE-2017-3000MEDIUM6.5Adobe Flash Player versions 24.0.0.221 and earlier have a vulnerability in the random number generator used for constant...
CVE-2017-5957MEDIUM5.5Stack-based buffer overflow in the vrend_decode_set_framebuffer_state function in vrend_decode.c in virglrenderer before...
CVE-2017-6314MEDIUM5.5The make_available_at_least function in io-tiff.c in gdk-pixbuf allows context-dependent attackers to cause a denial of ...
CVE-2017-6312MEDIUM5.5Integer overflow in io-ico.c in gdk-pixbuf allows context-dependent attackers to cause a denial of service (segmentation...
CVE-2017-6511MEDIUM6.1andrzuk/FineCMS before 2017-03-06 is vulnerable to a reflected XSS in index.php because of missing validation of the act...
CVE-2017-6491MEDIUM6.1Multiple Cross-Site Scripting (XSS) issues were discovered in EPESI 1.8.1.1. The vulnerabilities exist due to insufficie...
CVE-2017-6490MEDIUM6.1Multiple Cross-Site Scripting (XSS) issues were discovered in EPESI 1.8.1.1. The vulnerabilities exist due to insufficie...
CVE-2017-6489MEDIUM6.1Multiple Cross-Site Scripting (XSS) issues were discovered in EPESI 1.8.1.1. The vulnerabilities exist due to insufficie...
CVE-2017-6488MEDIUM6.1Multiple Cross-Site Scripting (XSS) issues were discovered in EPESI 1.8.1.1. The vulnerabilities exist due to insufficie...
CVE-2017-6487MEDIUM6.1Multiple Cross-Site Scripting (XSS) issues were discovered in EPESI 1.8.1.1. The vulnerabilities exist due to insufficie...
CVE-2017-6484MEDIUM6.1Multiple Cross-Site Scripting (XSS) issues were discovered in INTER-Mediator 5.5. The vulnerabilities exist due to insuf...
CVE-2017-6478MEDIUM6.1paintballrefjosh/MaNGOSWebV4 before 4.0.8 is vulnerable to a reflected XSS in install/index.php (step parameter).

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now