2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-14130 | — | — | 1.6% | Sep 4, 2017 | The _bfd_elf_parse_attributes function in elf-attrs.c in the Binary File Descriptor (BFD) library (aka libbfd), as distr... |
| CVE-2017-14129 | — | — | 1.6% | Sep 4, 2017 | The read_section function in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Bi... |
| CVE-2017-14128 | — | — | 1.6% | Sep 4, 2017 | The decode_line_info function in dwarf2.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GN... |
| CVE-2017-14127 | — | — | 2.7% | Sep 4, 2017 | Command Injection in the Ping Module in the Web Interface on Technicolor TD5336 OI_Fw_v7 devices allows remote attackers... |
| CVE-2017-14126 | — | — | 2.3% | Sep 4, 2017 | The Participants Database plugin before 1.7.5.10 for WordPress has XSS. |
| CVE-2017-14123 | HIGH | 8.8 | 6.1% | Sep 4, 2017 | Zoho ManageEngine Firewall Analyzer 12200 has an unrestricted File Upload vulnerability in the "Group Chat" section. Any... |
| CVE-2017-14122 | CRITICAL | 9.1 | 1.8% | Sep 3, 2017 | unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from a stack-based buffer over-read in unrarlib.c, related to ExtrFile... |
| CVE-2017-14121 | MEDIUM | 5.5 | 1.1% | Sep 3, 2017 | The DecodeNumber function in unrarlib.c in unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from a NULL pointer derefer... |
| CVE-2017-14120 | HIGH | 7.5 | 2.1% | Sep 3, 2017 | unrar 0.0.1 (aka unrar-free or unrar-gpl) suffers from a directory traversal vulnerability for RAR v2 archives: pathname... |
| CVE-2017-14119 | — | — | 2.4% | Sep 3, 2017 | In the EyesOfNetwork web interface (aka eonweb) 5.1-0, module\tool_all\tools\snmpwalk.php does not properly restrict pop... |
| CVE-2017-14118 | — | — | 2.4% | Sep 3, 2017 | In the EyesOfNetwork web interface (aka eonweb) 5.1-0, module\tool_all\tools\interface.php does not properly restrict ex... |
| CVE-2017-14117 | — | — | 8.0% | Sep 3, 2017 | The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG589 and NVG599 devices, when IP Passthrough mode is not used, conf... |
| CVE-2017-14116 | — | — | 3.3% | Sep 3, 2017 | The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG599 device, when IP Passthrough mode is not used, configures WAN a... |
| CVE-2017-14115 | — | — | 4.4% | Sep 3, 2017 | The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG589 and NVG599 devices, when IP Passthrough mode is not used, conf... |
| CVE-2017-10793 | — | — | 2.8% | Sep 3, 2017 | The AT&T U-verse 9.2.2h0d83 firmware for the Arris NVG589, NVG599, and unspecified other devices, when IP Passthrough mo... |
| CVE-2017-14114 | — | — | 1.2% | Sep 2, 2017 | RTPproxy through 2.2.alpha.20160822 has a NAT feature that results in not properly determining the IP address and port n... |
| CVE-2017-14100 | — | — | 14.9% | Sep 2, 2017 | In Asterisk 11.x before 11.25.2, 13.x before 13.17.1, and 14.x before 14.6.1 and Certified Asterisk 11.x before 11.6-cer... |
| CVE-2017-14099 | — | — | 4.3% | Sep 2, 2017 | In res/res_rtp_asterisk.c in Asterisk 11.x before 11.25.2, 13.x before 13.17.1, and 14.x before 14.6.1 and Certified Ast... |
| CVE-2017-14098 | — | — | 50.1% | Sep 2, 2017 | In the pjsip channel driver (res_pjsip) in Asterisk 13.x before 13.17.1 and 14.x before 14.6.1, a carefully crafted tel ... |
| CVE-2017-14053 | — | — | 1.8% | Sep 1, 2017 | NetApp OnCommand Unified Manager for Clustered Data ONTAP before 7.2P1 does not set the secure flag for an unspecified c... |
| CVE-2017-12874 | — | — | 1.3% | Sep 1, 2017 | The InfoCard module 1.0 for SimpleSAMLphp allows attackers to spoof XML messages by leveraging an incorrect check of ret... |
| CVE-2017-12873 | — | — | 1.7% | Sep 1, 2017 | SimpleSAMLphp 1.7.0 through 1.14.10 might allow attackers to obtain sensitive information, gain unauthorized access, or ... |
| CVE-2017-12872 | — | — | 1.4% | Sep 1, 2017 | The (1) Htpasswd authentication source in the authcrypt module and (2) SimpleSAML_Session class in SimpleSAMLphp 1.14.11... |
| CVE-2017-12871 | — | — | 0.5% | Sep 1, 2017 | The aesEncrypt method in lib/SimpleSAML/Utils/Crypto.php in SimpleSAMLphp 1.14.x through 1.14.11 makes it easier for con... |
| CVE-2017-12693 | — | — | 2.9% | Sep 1, 2017 | The ReadBMPImage function in coders/bmp.c in ImageMagick 7.0.6-6 allows remote attackers to cause a denial of service (m... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now