2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-14945 | — | — | 0.8% | Sep 30, 2017 | Artifex GSView 6.0 Beta on Windows allows attackers to cause a denial of service or possibly have unspecified other impa... |
| CVE-2017-14944 | — | — | 0.9% | Sep 30, 2017 | Inedo ProGet before 4.7.14 does not properly address dangerous package IDs during package addition, aka PG-1060. |
| CVE-2017-14942 | — | — | 60.9% | Sep 30, 2017 | Intelbras WRN 150 devices allow remote attackers to read the configuration file, and consequently bypass authentication,... |
| CVE-2017-14940 | — | — | 1.9% | Sep 30, 2017 | scan_unit_for_symbols in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binuti... |
| CVE-2017-14939 | — | — | 5.9% | Sep 30, 2017 | decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.... |
| CVE-2017-14938 | — | — | 2.0% | Sep 30, 2017 | _bfd_elf_slurp_version_tables in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU B... |
| CVE-2017-14935 | — | — | 1.4% | Sep 30, 2017 | Pulse Secure Pulse One On-Premise 2.0.1649 and below does not properly validate requests, which allows remote users to q... |
| CVE-2017-14934 | — | — | 1.2% | Sep 30, 2017 | process_debug_info in dwarf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2... |
| CVE-2017-14933 | — | — | 1.3% | Sep 30, 2017 | read_formatted_entries in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binut... |
| CVE-2017-14932 | — | — | 1.3% | Sep 30, 2017 | decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.... |
| CVE-2017-14931 | — | — | 0.9% | Sep 30, 2017 | ExifImageFile::readDQT in ExifImageFileRead.cpp in OpenExif 2.1.4 allows remote attackers to cause a denial of service (... |
| CVE-2017-14930 | — | — | 1.4% | Sep 30, 2017 | Memory leak in decode_line_info in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in ... |
| CVE-2017-14929 | — | — | 1.4% | Sep 30, 2017 | In Poppler 0.59.0, memory corruption occurs in a call to Object::dictLookup() in Object.h after a repeating series of Gf... |
| CVE-2017-14928 | MEDIUM | 5.5 | 0.7% | Sep 30, 2017 | In Poppler 0.59.0, a NULL Pointer Dereference exists in AnnotRichMedia::Configuration::Configuration in Annot.cc via a c... |
| CVE-2017-14927 | — | — | 0.9% | Sep 30, 2017 | In Poppler 0.59.0, a NULL Pointer Dereference exists in the SplashOutputDev::type3D0() function in SplashOutputDev.cc vi... |
| CVE-2017-14926 | MEDIUM | 5.5 | 0.7% | Sep 30, 2017 | In Poppler 0.59.0, a NULL Pointer Dereference exists in AnnotRichMedia::Content::Content in Annot.cc via a crafted PDF d... |
| CVE-2017-14925 | — | — | 0.5% | Sep 30, 2017 | Cross-Site Request Forgery (CSRF) vulnerability via IMG element in Tiki before 16.3, 17.x before 17.1, 12 LTS before 12.... |
| CVE-2017-14924 | — | — | 0.5% | Sep 30, 2017 | Cross-Site Request Forgery (CSRF) vulnerability via IMG element in Tiki before 16.3, 17.x before 17.1, 12 LTS before 12.... |
| CVE-2017-14923 | — | — | 0.9% | Sep 30, 2017 | Stored XSS vulnerability via IMG element at "Leadname" of CRM in Tine 2.0 Community Edition before 2017.08.4 allows an a... |
| CVE-2017-14922 | — | — | 0.9% | Sep 30, 2017 | Stored XSS vulnerability via IMG element at "History" of Profile, Calendar, Tasks, and CRM in Tine 2.0 Community Edition... |
| CVE-2017-14921 | — | — | 0.9% | Sep 30, 2017 | Stored XSS vulnerability via IMG element at "Filename" of Filemanager in Tine 2.0 Community Edition before 2017.08.4 all... |
| CVE-2017-14920 | — | — | 1.1% | Sep 30, 2017 | Stored XSS vulnerability in eGroupware Community Edition before 16.1.20170922 allows an unauthenticated remote attacker ... |
| CVE-2017-14738 | — | — | 2.6% | Sep 30, 2017 | FileRun (version 2017.09.18 and below) suffers from a remote SQL injection vulnerability due to a failure to sanitize in... |
| CVE-2017-14702 | CRITICAL | 9.8 | 8.3% | Sep 30, 2017 | ERS Data System 1.8.1.0 allows remote attackers to execute arbitrary code, related to "com.branaghgroup.ecers.update.Upd... |
| CVE-2017-14620 | — | — | 2.5% | Sep 30, 2017 | SmarterStats Version 11.3.6347 will Render the Referer Field of HTTP Logfiles from URL /Data/Reports/ReferringURLsWithQu... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now