2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-6334 | HIGH | 8.8 | 72.2% | Mar 6, 2017 | dnslookup.cgi on NETGEAR DGN2200 devices with firmware through 10.0.0.50 allows remote authenticated users to execute ar... |
| CVE-2017-2290 | HIGH | 8.8 | 1.2% | Mar 3, 2017 | On Windows installations of the mcollective-puppet-agent plugin, version 1.12.0, a non-administrator user can create an ... |
| CVE-2017-5233 | HIGH | 7.8 | 0.9% | Mar 2, 2017 | Rapid7 AppSpider Pro installers prior to version 6.14.053 contain a DLL preloading vulnerability, wherein it is possible... |
| CVE-2017-6347 | HIGH | 7.8 | 0.4% | Mar 1, 2017 | The ip_cmsg_recv_checksum function in net/ipv4/ip_sockglue.c in the Linux kernel before 4.10.1 has incorrect expectation... |
| CVE-2017-6346 | HIGH | 7 | 0.3% | Mar 1, 2017 | Race condition in net/packet/af_packet.c in the Linux kernel before 4.9.13 allows local users to cause a denial of servi... |
| CVE-2017-5995 | HIGH | 7.5 | 1.9% | Mar 1, 2017 | The NetApp ONTAP Select Deploy administration utility 2.0 through 2.2.1 might allow remote attackers to obtain sensitive... |
| CVE-2017-0037 | HIGH | 8.1 | 80.4% | Feb 26, 2017 | Microsoft Internet Explorer 10 and 11 and Microsoft Edge have a type confusion issue in the Layout::MultiColumnBoxBuilde... |
| CVE-2017-2791 | HIGH | 7.5 | 1.2% | Feb 24, 2017 | JustSystems Ichitaro 2016 Trial contains a vulnerability that exists when trying to open a specially crafted PowerPoint ... |
| CVE-2017-2790 | HIGH | 8.8 | 1.9% | Feb 24, 2017 | When processing a record type of 0x3c from a Workbook stream from an Excel file (.xls), JustSystems Ichitaro Office trus... |
| CVE-2017-2789 | HIGH | 8.8 | 2.3% | Feb 24, 2017 | When copying filedata into a buffer, JustSystems Ichitaro Office 2016 Trial will calculate two values to determine how m... |
| CVE-2017-5669 | HIGH | 7.8 | 0.4% | Feb 24, 2017 | The do_shmat function in ipc/shm.c in the Linux kernel through 4.9.12 does not restrict the address calculated by a cert... |
| CVE-2017-6074 | HIGH | 7.8 | 6.0% | Feb 18, 2017 | The dccp_rcv_state_process function in net/dccp/input.c in the Linux kernel through 4.9.11 mishandles DCCP_PKT_REQUEST p... |
| CVE-2017-6001 | HIGH | 7 | 1.7% | Feb 18, 2017 | Race condition in kernel/events/core.c in the Linux kernel before 4.9.7 allows local users to gain privileges via a craf... |
| CVE-2017-5991 | HIGH | 7.5 | 15.2% | Feb 15, 2017 | An issue was discovered in Artifex MuPDF before 1912de5f08e90af1d9d0a9791f58ba3afdb9d465. The pdf_run_xobject function i... |
| CVE-2017-2996 | HIGH | 8.8 | 4.9% | Feb 15, 2017 | Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable memory corruption vulnerability in Primetime SDK.... |
| CVE-2017-2995 | HIGH | 8.8 | 6.5% | Feb 15, 2017 | Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable type confusion vulnerability related to the Messa... |
| CVE-2017-2994 | HIGH | 8.8 | 6.3% | Feb 15, 2017 | Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable use after free vulnerability in Primetime SDK eve... |
| CVE-2017-2993 | HIGH | 8.8 | 6.1% | Feb 15, 2017 | Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable use after free vulnerability related to event han... |
| CVE-2017-2992 | HIGH | 8.8 | 32.8% | Feb 15, 2017 | Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable heap overflow vulnerability when parsing an MP4 h... |
| CVE-2017-2991 | HIGH | 8.8 | 8.7% | Feb 15, 2017 | Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable memory corruption vulnerability in the h264 codec... |
| CVE-2017-2990 | HIGH | 8.8 | 9.7% | Feb 15, 2017 | Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable memory corruption vulnerability in the h264 decom... |
| CVE-2017-2988 | HIGH | 8.8 | 18.2% | Feb 15, 2017 | Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable memory corruption vulnerability when performing g... |
| CVE-2017-2987 | HIGH | 8.8 | 8.6% | Feb 15, 2017 | Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable integer overflow vulnerability related to Flash B... |
| CVE-2017-2986 | HIGH | 8.8 | 31.0% | Feb 15, 2017 | Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable heap overflow vulnerability in the Flash Video (F... |
| CVE-2017-2985 | HIGH | 8.8 | 21.9% | Feb 15, 2017 | Adobe Flash Player versions 24.0.0.194 and earlier have an exploitable use after free vulnerability in the ActionScript ... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now