2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-12922 | — | — | 1.3% | Aug 28, 2017 | wchar.c in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted... |
| CVE-2017-12921 | — | — | 1.3% | Aug 28, 2017 | PFileFlashPixView::GetGlobalInfoProperty in f_fpxvw.cpp in libfpx 1.3.1_p6 allows remote attackers to cause a denial of ... |
| CVE-2017-12920 | — | — | 1.3% | Aug 28, 2017 | CDirectory::GetDirEntry in dir.cxx in libfpx 1.3.1_p6 allows remote attackers to cause a denial of service (NULL pointer... |
| CVE-2017-12919 | — | — | 1.4% | Aug 28, 2017 | Heap-based buffer overflow in OLEStream::WriteVT_LPSTR in olestrm.cpp in libfpx 1.3.1_p6 allows remote attackers to caus... |
| CVE-2017-12877 | MEDIUM | 6.5 | 2.3% | Aug 28, 2017 | Use-after-free vulnerability in the DestroyImage function in image.c in ImageMagick before 7.0.6-6 allows remote attacke... |
| CVE-2017-12876 | MEDIUM | 6.5 | 3.0% | Aug 28, 2017 | Heap-based buffer overflow in enhance.c in ImageMagick before 7.0.6-6 allows remote attackers to cause a denial of servi... |
| CVE-2017-12840 | — | — | 0.3% | Aug 28, 2017 | A kernel driver, namely DLMFENC.sys, bundled with the DESLock+ client application 4.8.16 and earlier contains a locally ... |
| CVE-2017-12077 | — | — | 1.4% | Aug 28, 2017 | Uncontrolled Resource Consumption vulnerability in SYNO.Core.PortForwarding.Rules in Synology Router Manager (SRM) befor... |
| CVE-2017-12076 | — | — | 1.4% | Aug 28, 2017 | Uncontrolled Resource Consumption vulnerability in SYNO.Core.PortForwarding.Rules in Synology DiskStation (DSM) before 6... |
| CVE-2017-8380 | — | — | 3.9% | Aug 28, 2017 | Buffer overflow in the "megasas_mmio_write" function in Qemu 2.9.0 allows remote attackers to have unspecified impact vi... |
| CVE-2017-13710 | — | — | 2.7% | Aug 27, 2017 | The setup_group function in elf.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binuti... |
| CVE-2017-13709 | — | — | 1.1% | Aug 27, 2017 | In FlightGear before version 2017.3.1, Main/logger.cxx in the FGLogger subsystem allows one to overwrite any file via a ... |
| CVE-2017-13707 | CRITICAL | 9.8 | 3.0% | Aug 27, 2017 | Privilege escalation in Replibit Backup Manager earlier than version 2017.08.04 allows attackers to gain root privileges... |
| CVE-2017-12595 | — | — | 1.8% | Aug 27, 2017 | The tokenizer in QPDF 6.0.0 and 7.0.b1 is recursive for arrays and dictionaries, which allows remote attackers to cause ... |
| CVE-2017-7693 | — | — | 3.9% | Aug 26, 2017 | Directory traversal vulnerability in viewer_script.jsp in Riverbed OPNET App Response Xpert (ARX) version 9.6.1 allows r... |
| CVE-2017-12817 | HIGH | 7.5 | 0.9% | Aug 25, 2017 | In Kaspersky Internet Security for Android 11.12.4.1622, some of the application trace files were not encrypted. |
| CVE-2017-12816 | CRITICAL | 9.8 | 1.5% | Aug 25, 2017 | In Kaspersky Internet Security for Android 11.12.4.1622, some of application exports activities have weak permissions, w... |
| CVE-2017-9650 | — | — | 2.4% | Aug 25, 2017 | An Unrestricted Upload of File with Dangerous Type issue was discovered in Automated Logic Corporation (ALC) ALC WebCTRL... |
| CVE-2017-9644 | — | — | 1.4% | Aug 25, 2017 | An Unquoted Search Path or Element issue was discovered in Automated Logic Corporation (ALC) ALC WebCTRL, i-Vu, SiteScan... |
| CVE-2017-9640 | — | — | 8.5% | Aug 25, 2017 | A Path Traversal issue was discovered in Automated Logic Corporation (ALC) ALC WebCTRL, i-Vu, SiteScan Web prior to 6.5;... |
| CVE-2017-7934 | — | — | 2.1% | Aug 25, 2017 | An Improper Authentication issue was discovered in OSIsoft PI Server 2017 PI Data Archive versions prior to 2017. PI Net... |
| CVE-2017-7930 | — | — | 2.0% | Aug 25, 2017 | An Improper Authentication issue was discovered in OSIsoft PI Server 2017 PI Data Archive versions prior to 2017. PI Dat... |
| CVE-2017-7926 | — | — | 0.8% | Aug 25, 2017 | A Cross-Site Request Forgery issue was discovered in OSIsoft PI Web API versions prior to 2017 (1.9.0). The vulnerabilit... |
| CVE-2017-12857 | — | — | 1.6% | Aug 25, 2017 | Polycom SoundStation IP, VVX, and RealPresence Trio that are running software older than UCS 4.0.12, 5.4.5 rev AG, 5.4.7... |
| CVE-2017-12707 | — | — | 2.6% | Aug 25, 2017 | A Stack-based Buffer Overflow issue was discovered in SpiderControl SCADA MicroBrowser Versions 1.6.30.144 and prior. Op... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now