2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-5614 | MEDIUM | 6.1 | 1.2% | Mar 3, 2017 | Open redirect vulnerability in cgiemail and cgiecho allows remote attackers to redirect users to arbitrary web sites and... |
| CVE-2017-6397 | MEDIUM | 6.1 | 0.8% | Mar 2, 2017 | An issue was discovered in FlightAirMap v1.0-beta.10. The vulnerability exists due to insufficient filtration of user-su... |
| CVE-2017-6394 | MEDIUM | 6.1 | 1.2% | Mar 2, 2017 | Multiple Cross-Site Scripting (XSS) issues were discovered in OpenEMR 5.0.0 and 5.0.1-dev. The vulnerabilities exist due... |
| CVE-2017-6415 | MEDIUM | 5.5 | 1.3% | Mar 2, 2017 | The dex_parse_debug_item function in libr/bin/p/bin_dex.c in radare2 1.2.1 allows remote attackers to cause a denial of ... |
| CVE-2017-5976 | MEDIUM | 5.5 | 2.1% | Mar 1, 2017 | Heap-based buffer overflow in the zzip_mem_entry_extra_block function in memdisk.c in zziplib 0.13.62, 0.13.61, 0.13.60,... |
| CVE-2017-5975 | MEDIUM | 5.5 | 2.1% | Mar 1, 2017 | Heap-based buffer overflow in the __zzip_get64 function in fetch.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.5... |
| CVE-2017-5974 | MEDIUM | 5.5 | 1.8% | Mar 1, 2017 | Heap-based buffer overflow in the __zzip_get32 function in fetch.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.5... |
| CVE-2017-6188 | MEDIUM | 5.5 | 0.4% | Feb 22, 2017 | Munin before 2.999.6 has a local file write vulnerability when CGI graphs are enabled. Setting multiple upper_limit GET ... |
| CVE-2017-6071 | MEDIUM | 5.3 | 1.6% | Feb 21, 2017 | CMS Made Simple version 1.x Form Builder before version 0.8.1.6 allows remote attackers to conduct information-disclosur... |
| CVE-2017-2371 | MEDIUM | 6.5 | 5.7% | Feb 20, 2017 | An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. The issue involves the "WebKit" compon... |
| CVE-2017-5964 | MEDIUM | 6.1 | 0.9% | Feb 12, 2017 | An issue was discovered in Emoncms through 9.8.0. The vulnerability exists due to insufficient filtration of user-suppli... |
| CVE-2017-5942 | MEDIUM | 6.1 | 1.0% | Feb 10, 2017 | An issue was discovered in the WP Mail plugin before 1.2 for WordPress. The replyto parameter when composing a mail allo... |
| CVE-2017-5606 | MEDIUM | 5.9 | 0.8% | Feb 9, 2017 | An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to imperson... |
| CVE-2017-5592 | MEDIUM | 5.9 | 0.8% | Feb 9, 2017 | An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to imperson... |
| CVE-2017-5591 | MEDIUM | 5.9 | 1.3% | Feb 9, 2017 | An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to imperson... |
| CVE-2017-3822 | MEDIUM | 5.3 | 1.5% | Feb 3, 2017 | A vulnerability in the logging subsystem of the Cisco Firepower Threat Defense (FTD) Firepower Device Manager (FDM) coul... |
| CVE-2017-3806 | MEDIUM | 5.3 | 0.3% | Feb 3, 2017 | A vulnerability in CLI command processing in the Cisco Firepower 4100 Series Next-Generation Firewall and Cisco Firepowe... |
| CVE-2017-3318 | MEDIUM | 4 | 0.5% | Jan 27, 2017 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Error Handling). Supported versions t... |
| CVE-2017-3317 | MEDIUM | 4 | 0.4% | Jan 27, 2017 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Logging). Supported versions that are affecte... |
| CVE-2017-3313 | MEDIUM | 4.7 | 0.4% | Jan 27, 2017 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: MyISAM). Supported versions that are ... |
| CVE-2017-3312 | MEDIUM | 6.7 | 0.4% | Jan 27, 2017 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Packaging). Supported versions that a... |
| CVE-2017-3291 | MEDIUM | 6.3 | 0.4% | Jan 27, 2017 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Packaging). Supported versions that a... |
| CVE-2017-3265 | MEDIUM | 5.6 | 1.4% | Jan 27, 2017 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Packaging). Supported versions that a... |
| CVE-2017-3258 | MEDIUM | 6.5 | 3.1% | Jan 27, 2017 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are aff... |
| CVE-2017-3257 | MEDIUM | 6.5 | 2.6% | Jan 27, 2017 | Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: InnoDB). Supported versions that are ... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now