2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-8263 | — | — | 0.5% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, a kernel fault can occur when doing cert... |
| CVE-2017-8262 | — | — | 0.3% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, in some memory allocation and free funct... |
| CVE-2017-8261 | — | — | 0.4% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, in a camera driver ioctl, a kernel overw... |
| CVE-2017-8260 | — | — | 0.5% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, due to a type downcast, a value may impr... |
| CVE-2017-8257 | — | — | 0.3% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, when accessing the sde_rotator debug int... |
| CVE-2017-8256 | — | — | 0.4% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, array out of bounds access can occur if ... |
| CVE-2017-8255 | — | — | 0.5% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, an integer overflow vulnerability exists... |
| CVE-2017-8254 | — | — | 0.4% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, an audio client pointer is dereferenced ... |
| CVE-2017-8253 | — | — | 0.5% | Aug 18, 2017 | In all Qualcomm products with Android releases from CAF using the Linux kernel, kernel memory can potentially be overwri... |
| CVE-2017-12949 | — | — | 1.1% | Aug 18, 2017 | lib\modules\contributors\contributor_list_table.php in the Podlove Podcast Publisher plugin 2.5.3 and earlier for WordPr... |
| CVE-2017-12948 | — | — | 0.8% | Aug 18, 2017 | Core\Admin\PFTemplater.php in the PressForward plugin 4.3.0 and earlier for WordPress has XSS in the PATH_INFO to wp-adm... |
| CVE-2017-12947 | — | — | 1.3% | Aug 18, 2017 | classes\controller\admin\modals.php in the Easy Modal plugin before 2.1.0 for WordPress has SQL injection in an untrash ... |
| CVE-2017-12946 | — | — | 1.3% | Aug 18, 2017 | classes\controller\admin\modals.php in the Easy Modal plugin before 2.1.0 for WordPress has SQL injection in a delete ac... |
| CVE-2017-12882 | — | — | 0.6% | Aug 18, 2017 | Stored Cross-site scripting (XSS) vulnerability in Spring Batch Admin before 1.3.0 allows remote authenticated users to ... |
| CVE-2017-12881 | — | — | 0.8% | Aug 18, 2017 | Cross-site request forgery (CSRF) vulnerability in the Spring Batch Admin before 1.3.0 allows remote attackers to hijack... |
| CVE-2017-12776 | — | — | 1.4% | Aug 18, 2017 | SQL injection vulnerability in reports.php in NexusPHP 1.5 allows remote attackers to execute arbitrary SQL commands via... |
| CVE-2017-12593 | — | — | 0.5% | Aug 18, 2017 | ASUS DSL-N10S V2.1.16_APAC devices allow CSRF. |
| CVE-2017-12592 | — | — | 1.1% | Aug 18, 2017 | ASUS DSL-N10S V2.1.16_APAC devices have a privilege escalation vulnerability. A normal user can escalate its privilege a... |
| CVE-2017-12591 | — | — | 0.5% | Aug 18, 2017 | ASUS DSL-N10S V2.1.16_APAC devices have reflected and stored cross site scripting, as demonstrated by the snmpSysName pa... |
| CVE-2017-12589 | — | — | 0.6% | Aug 18, 2017 | ToMAX R60G R60GV2-V2.0-v.2.6.3-170330 devices do not have any protection against a CSRF attack. |
| CVE-2017-12420 | — | — | 3.1% | Aug 18, 2017 | Heap-based buffer overflow in the SMB implementation in NetApp Clustered Data ONTAP before 8.3.2P8 and 9.0 before P2 all... |
| CVE-2017-11653 | HIGH | 7.8 | 0.4% | Aug 18, 2017 | Razer Synapse 2.20.15.1104 and earlier uses weak permissions for the Devices directory, which allows local users to gain... |
| CVE-2017-11652 | HIGH | 8.4 | 0.4% | Aug 18, 2017 | Razer Synapse 2.20.15.1104 and earlier uses weak permissions for the CrashReporter directory, which allows local users t... |
| CVE-2017-11185 | HIGH | 7.5 | 3.3% | Aug 18, 2017 | The gmp plugin in strongSwan before 5.6.0 allows remote attackers to cause a denial of service (NULL pointer dereference... |
| CVE-2017-0687 | — | — | 0.3% | Aug 18, 2017 | A denial of service vulnerability in the Android media framework (libavc). Product: Android. Versions: 6.0, 6.0.1, 7.0, ... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now