2017 CVE Vulnerabilities

17,105 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-14280XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other...
CVE-2017-14279XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other...
CVE-2017-14278XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other...
CVE-2017-14277XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other...
CVE-2017-14276XnView Classic for Windows Version 2.40 allows attackers to cause a denial of service or possibly have unspecified other...
CVE-2017-14275XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr...
CVE-2017-14274XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr...
CVE-2017-14273XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr...
CVE-2017-14272XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr...
CVE-2017-14271XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr...
CVE-2017-14270XnView Classic for Windows Version 2.40 allows attackers to execute arbitrary code or cause a denial of service via a cr...
CVE-2017-14153This vulnerability allows local attackers to escalate privileges on Jungo WinDriver 12.4.0 and earlier. An attacker must...
CVE-2017-14075This vulnerability allows local attackers to escalate privileges on Jungo WinDriver 12.4.0 and earlier. An attacker must...
CVE-2017-7650In Mosquitto before 1.4.12, pattern based ACLs can be bypassed by clients that set their username/client id to '#' or '+...
CVE-2017-7649The network enabled distribution of Kura before 2.1.0 takes control over the device's firewall setup but does not allow ...
CVE-2017-14269EE 4GEE WiFi MBB (before EE60_00_05.00_31) devices allow remote attackers to obtain sensitive information via a JSONP en...
CVE-2017-14268EE 4GEE WiFi MBB (before EE60_00_05.00_31) devices have XSS in the sms_content parameter in a getSMSlist request.
CVE-2017-14267EE 4GEE WiFi MBB (before EE60_00_05.00_31) devices have CSRF, related to goform/AddNewProfile, goform/setWanDisconnect, ...
CVE-2017-14265A Stack-based Buffer Overflow was discovered in xtrans_interpolate in internal/dcraw_common.cpp in LibRaw before 0.18.3....
CVE-2017-14263Honeywell NVR devices allow remote attackers to create a user account in the admin group by leveraging access to a guest...
CVE-2017-14262On Samsung NVR devices, remote attackers can read the MD5 password hash of the 'admin' account via certain szUserName JS...
CVE-2017-14261In the SDK in Bento4 1.5.0-616, the AP4_StszAtom class in Ap4StszAtom.cpp file contains a Read Memory Access Violation v...
CVE-2017-14260In the SDK in Bento4 1.5.0-616, the AP4_StssAtom class in Ap4StssAtom.cpp contains a Write Memory Access Violation vulne...
CVE-2017-14259In the SDK in Bento4 1.5.0-616, the AP4_StscAtom class in Ap4StscAtom.cpp contains a Write Memory Access Violation vulne...
CVE-2017-14258In the SDK in Bento4 1.5.0-616, SetItemCount in Core/Ap4StscAtom.h file contains a Write Memory Access Violation vulnera...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now