2017 CVE Vulnerabilities

17,104 CVEs published in 2017.

Filter:MEDIUMClear
CVE IDSeverityCVSSDescription
CVE-2017-5614MEDIUM6.1Open redirect vulnerability in cgiemail and cgiecho allows remote attackers to redirect users to arbitrary web sites and...
CVE-2017-6397MEDIUM6.1An issue was discovered in FlightAirMap v1.0-beta.10. The vulnerability exists due to insufficient filtration of user-su...
CVE-2017-6394MEDIUM6.1Multiple Cross-Site Scripting (XSS) issues were discovered in OpenEMR 5.0.0 and 5.0.1-dev. The vulnerabilities exist due...
CVE-2017-6415MEDIUM5.5The dex_parse_debug_item function in libr/bin/p/bin_dex.c in radare2 1.2.1 allows remote attackers to cause a denial of ...
CVE-2017-5976MEDIUM5.5Heap-based buffer overflow in the zzip_mem_entry_extra_block function in memdisk.c in zziplib 0.13.62, 0.13.61, 0.13.60,...
CVE-2017-5975MEDIUM5.5Heap-based buffer overflow in the __zzip_get64 function in fetch.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.5...
CVE-2017-5974MEDIUM5.5Heap-based buffer overflow in the __zzip_get32 function in fetch.c in zziplib 0.13.62, 0.13.61, 0.13.60, 0.13.59, 0.13.5...
CVE-2017-6188MEDIUM5.5Munin before 2.999.6 has a local file write vulnerability when CGI graphs are enabled. Setting multiple upper_limit GET ...
CVE-2017-6071MEDIUM5.3CMS Made Simple version 1.x Form Builder before version 0.8.1.6 allows remote attackers to conduct information-disclosur...
CVE-2017-2371MEDIUM6.5An issue was discovered in certain Apple products. iOS before 10.2.1 is affected. The issue involves the "WebKit" compon...
CVE-2017-5964MEDIUM6.1An issue was discovered in Emoncms through 9.8.0. The vulnerability exists due to insufficient filtration of user-suppli...
CVE-2017-5942MEDIUM6.1An issue was discovered in the WP Mail plugin before 1.2 for WordPress. The replyto parameter when composing a mail allo...
CVE-2017-5606MEDIUM5.9An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to imperson...
CVE-2017-5592MEDIUM5.9An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to imperson...
CVE-2017-5591MEDIUM5.9An incorrect implementation of "XEP-0280: Message Carbons" in multiple XMPP clients allows a remote attacker to imperson...
CVE-2017-3822MEDIUM5.3A vulnerability in the logging subsystem of the Cisco Firepower Threat Defense (FTD) Firepower Device Manager (FDM) coul...
CVE-2017-3806MEDIUM5.3A vulnerability in CLI command processing in the Cisco Firepower 4100 Series Next-Generation Firewall and Cisco Firepowe...
CVE-2017-3318MEDIUM4Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Error Handling). Supported versions t...
CVE-2017-3317MEDIUM4Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Logging). Supported versions that are affecte...
CVE-2017-3313MEDIUM4.7Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: MyISAM). Supported versions that are ...
CVE-2017-3312MEDIUM6.7Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Packaging). Supported versions that a...
CVE-2017-3291MEDIUM6.3Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Packaging). Supported versions that a...
CVE-2017-3265MEDIUM5.6Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: Packaging). Supported versions that a...
CVE-2017-3258MEDIUM6.5Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: DDL). Supported versions that are aff...
CVE-2017-3257MEDIUM6.5Vulnerability in the MySQL Server component of Oracle MySQL (subcomponent: Server: InnoDB). Supported versions that are ...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now