2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-12449 | — | — | 1.5% | Aug 4, 2017 | The _bfd_vms_save_sized_string function in vms-misc.c in the Binary File Descriptor (BFD) library (aka libbfd), as distr... |
| CVE-2017-12448 | — | — | 2.0% | Aug 4, 2017 | The bfd_cache_close function in bfd/cache.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in ... |
| CVE-2017-10949 | — | — | 5.4% | Aug 4, 2017 | Directory Traversal in Dell Storage Manager 2016 R2.1 causes Information Disclosure when the doGet method of the EmWebsi... |
| CVE-2017-11657 | HIGH | 7.3 | 0.7% | Aug 4, 2017 | Dashlane might allow local users to gain privileges by placing a Trojan horse WINHTTP.dll in the %APPDATA%\Dashlane dire... |
| CVE-2017-12413 | — | — | 1.1% | Aug 4, 2017 | AXIS 2100 devices 2.43 have XSS via the URI, possibly related to admin/admin.shtml. |
| CVE-2017-12435 | — | — | 2.3% | Aug 4, 2017 | In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadSUNImage in coders/sun.c, which ... |
| CVE-2017-12434 | — | — | 1.2% | Aug 4, 2017 | In ImageMagick 7.0.6-1, a missing NULL check vulnerability was found in the function ReadMATImage in coders/mat.c, which... |
| CVE-2017-12433 | — | — | 1.1% | Aug 4, 2017 | In ImageMagick 7.0.6-1, a memory leak vulnerability was found in the function ReadPESImage in coders/pes.c, which allows... |
| CVE-2017-12432 | — | — | 2.1% | Aug 4, 2017 | In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadPCXImage in coders/pcx.c, which ... |
| CVE-2017-12431 | — | — | 1.4% | Aug 4, 2017 | In ImageMagick 7.0.6-1, a use-after-free vulnerability was found in the function ReadWMFImage in coders/wmf.c, which all... |
| CVE-2017-12430 | — | — | 2.3% | Aug 4, 2017 | In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadMPCImage in coders/mpc.c, which ... |
| CVE-2017-12429 | — | — | 1.8% | Aug 4, 2017 | In ImageMagick 7.0.6-1, a memory exhaustion vulnerability was found in the function ReadMIFFImage in coders/miff.c, whic... |
| CVE-2017-12428 | — | — | 2.1% | Aug 4, 2017 | In ImageMagick 7.0.6-1, a memory leak vulnerability was found in the function ReadWMFImage in coders/wmf.c, which allows... |
| CVE-2017-12427 | — | — | 2.1% | Aug 4, 2017 | The ProcessMSLScript function in coders/msl.c in ImageMagick before 6.9.9-5 and 7.x before 7.0.6-5 allows remote attacke... |
| CVE-2017-12425 | — | — | 2.4% | Aug 4, 2017 | An issue was discovered in Varnish HTTP Cache 4.0.1 through 4.0.4, 4.1.0 through 4.1.7, 5.0.0, and 5.1.0 through 5.1.2. ... |
| CVE-2017-12424 | CRITICAL | 9.8 | 2.7% | Aug 4, 2017 | In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the a... |
| CVE-2017-12418 | — | — | 2.5% | Aug 4, 2017 | ImageMagick 7.0.6-5 has memory leaks in the parse8BIMW and format8BIM functions in coders/meta.c, related to the WriteIm... |
| CVE-2017-1504 | — | — | 0.9% | Aug 3, 2017 | IBM WebSphere Application Server version 9.0.0.4 could provide weaker than expected security after using the PasswordUti... |
| CVE-2017-1327 | — | — | 1.0% | Aug 3, 2017 | IBM iNotes 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScr... |
| CVE-2017-12414 | — | — | 1.6% | Aug 3, 2017 | Format Factory 4.1.0 has a DLL Hijacking Vulnerability because an untrusted search path is used for msimg32.dll, Windows... |
| CVE-2017-1199 | — | — | 0.7% | Aug 3, 2017 | IBM InfoSphere Master Data Management Server 10.0, 11.0, 11.3, 11.4, 11.5, and 11.6 is vulnerable to cross-site scriptin... |
| CVE-2017-11394 | — | — | 66.8% | Aug 3, 2017 | Proxy command injection vulnerability in Trend Micro OfficeScan 11 and XG (12) allows remote attackers to execute arbitr... |
| CVE-2017-11393 | — | — | 15.9% | Aug 3, 2017 | Proxy command injection vulnerability in Trend Micro OfficeScan 11 and XG (12) allows remote attackers to execute arbitr... |
| CVE-2017-11392 | — | — | 33.8% | Aug 3, 2017 | Proxy command injection vulnerability in Trend Micro InterScan Messaging Virtual Appliance 9.0 and 9.1 allows remote att... |
| CVE-2017-11391 | — | — | 61.8% | Aug 3, 2017 | Proxy command injection vulnerability in Trend Micro InterScan Messaging Virtual Appliance 9.0 and 9.1 allows remote att... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now