2017 CVE Vulnerabilities

17,105 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-8263In all Qualcomm products with Android releases from CAF using the Linux kernel, a kernel fault can occur when doing cert...
CVE-2017-8262In all Qualcomm products with Android releases from CAF using the Linux kernel, in some memory allocation and free funct...
CVE-2017-8261In all Qualcomm products with Android releases from CAF using the Linux kernel, in a camera driver ioctl, a kernel overw...
CVE-2017-8260In all Qualcomm products with Android releases from CAF using the Linux kernel, due to a type downcast, a value may impr...
CVE-2017-8257In all Qualcomm products with Android releases from CAF using the Linux kernel, when accessing the sde_rotator debug int...
CVE-2017-8256In all Qualcomm products with Android releases from CAF using the Linux kernel, array out of bounds access can occur if ...
CVE-2017-8255In all Qualcomm products with Android releases from CAF using the Linux kernel, an integer overflow vulnerability exists...
CVE-2017-8254In all Qualcomm products with Android releases from CAF using the Linux kernel, an audio client pointer is dereferenced ...
CVE-2017-8253In all Qualcomm products with Android releases from CAF using the Linux kernel, kernel memory can potentially be overwri...
CVE-2017-12949lib\modules\contributors\contributor_list_table.php in the Podlove Podcast Publisher plugin 2.5.3 and earlier for WordPr...
CVE-2017-12948Core\Admin\PFTemplater.php in the PressForward plugin 4.3.0 and earlier for WordPress has XSS in the PATH_INFO to wp-adm...
CVE-2017-12947classes\controller\admin\modals.php in the Easy Modal plugin before 2.1.0 for WordPress has SQL injection in an untrash ...
CVE-2017-12946classes\controller\admin\modals.php in the Easy Modal plugin before 2.1.0 for WordPress has SQL injection in a delete ac...
CVE-2017-12882Stored Cross-site scripting (XSS) vulnerability in Spring Batch Admin before 1.3.0 allows remote authenticated users to ...
CVE-2017-12881Cross-site request forgery (CSRF) vulnerability in the Spring Batch Admin before 1.3.0 allows remote attackers to hijack...
CVE-2017-12776SQL injection vulnerability in reports.php in NexusPHP 1.5 allows remote attackers to execute arbitrary SQL commands via...
CVE-2017-12593ASUS DSL-N10S V2.1.16_APAC devices allow CSRF.
CVE-2017-12592ASUS DSL-N10S V2.1.16_APAC devices have a privilege escalation vulnerability. A normal user can escalate its privilege a...
CVE-2017-12591ASUS DSL-N10S V2.1.16_APAC devices have reflected and stored cross site scripting, as demonstrated by the snmpSysName pa...
CVE-2017-12589ToMAX R60G R60GV2-V2.0-v.2.6.3-170330 devices do not have any protection against a CSRF attack.
CVE-2017-12420Heap-based buffer overflow in the SMB implementation in NetApp Clustered Data ONTAP before 8.3.2P8 and 9.0 before P2 all...
CVE-2017-11653HIGH7.8Razer Synapse 2.20.15.1104 and earlier uses weak permissions for the Devices directory, which allows local users to gain...
CVE-2017-11652HIGH8.4Razer Synapse 2.20.15.1104 and earlier uses weak permissions for the CrashReporter directory, which allows local users t...
CVE-2017-11185HIGH7.5The gmp plugin in strongSwan before 5.6.0 allows remote attackers to cause a denial of service (NULL pointer dereference...
CVE-2017-0687A denial of service vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, ...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now