2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-11675 | — | — | 2.9% | Jul 27, 2017 | The traverseStrictSanitize function in admin_dir/includes/classes/AdminRequestSanitizer.php in ZenCart 1.5.5e mishandles... |
| CVE-2017-11674 | — | — | 1.7% | Jul 27, 2017 | Reporter.exe in Acunetix 8 allows remote attackers to cause a denial of service (application crash) via a malformed PRE ... |
| CVE-2017-11673 | — | — | 2.7% | Jul 27, 2017 | Reporter.exe in Acunetix 8 allows remote attackers to execute arbitrary code or cause a denial of service (application c... |
| CVE-2017-7659 | — | — | 53.9% | Jul 26, 2017 | A maliciously constructed HTTP/2 request could cause mod_http2 in Apache HTTP Server 2.4.24, 2.4.25 to dereference a NUL... |
| CVE-2017-11671 | — | — | 0.4% | Jul 26, 2017 | Under certain circumstances, the ix86_expand_builtin function in i386.c in GNU Compiler Collection (GCC) version 4.6, 4.... |
| CVE-2017-11667 | — | — | 1.4% | Jul 26, 2017 | OpenProject before 6.1.6 and 7.x before 7.0.3 mishandles session expiry, which allows remote attackers to perform APIv3 ... |
| CVE-2017-9835 | — | — | 2.7% | Jul 26, 2017 | The gs_alloc_ref_array function in psi/ialloc.c in Artifex Ghostscript 9.21 allows remote attackers to cause a denial of... |
| CVE-2017-9740 | — | — | 1.8% | Jul 26, 2017 | The xps_decode_font_char_imp function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to c... |
| CVE-2017-9739 | — | — | 2.5% | Jul 26, 2017 | The Ins_JMPR function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial ... |
| CVE-2017-9727 | — | — | 2.5% | Jul 26, 2017 | The gx_ttfReader__Read function in base/gxttfb.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a... |
| CVE-2017-9726 | — | — | 2.8% | Jul 26, 2017 | The Ins_MDRP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial ... |
| CVE-2017-9620 | — | — | 1.8% | Jul 26, 2017 | The xps_select_font_encoding function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to c... |
| CVE-2017-9619 | — | — | 1.8% | Jul 26, 2017 | The xps_true_callback_glyph_name function in xps/xpsttf.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers t... |
| CVE-2017-9618 | — | — | 2.1% | Jul 26, 2017 | The xps_load_sfnt_name function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a... |
| CVE-2017-9612 | — | — | 2.5% | Jul 26, 2017 | The Ins_IP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial of... |
| CVE-2017-9611 | HIGH | 7.8 | 2.0% | Jul 26, 2017 | The Ins_MIRP function in base/ttinterp.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a denial ... |
| CVE-2017-9610 | — | — | 1.8% | Jul 26, 2017 | The xps_load_sfnt_name function in xps/xpsfont.c in Artifex Ghostscript GhostXPS 9.21 allows remote attackers to cause a... |
| CVE-2017-11666 | — | — | 0.8% | Jul 26, 2017 | Cross-site scripting (XSS) vulnerability in js/ViewerPanel.js in the file previewer plugin in Kopano WebApp versions 3.3... |
| CVE-2017-5691 | — | — | 1.4% | Jul 26, 2017 | Incorrect check in Intel processors from 6th and 7th Generation Intel Core Processor Families, Intel Xeon E3-1500M v5 an... |
| CVE-2017-11658 | — | — | 3.3% | Jul 26, 2017 | In the WP Rocket plugin 2.9.3 for WordPress, the Local File Inclusion mitigation technique is to trim traversal characte... |
| CVE-2017-11615 | — | — | 0.8% | Jul 26, 2017 | A sandbox escape in the Lua interface in Wube Factorio before 0.15.31 allows remote game servers or user-assisted attack... |
| CVE-2017-11612 | — | — | 1.0% | Jul 26, 2017 | In Joomla! before 3.7.4, inadequate filtering of potentially malicious HTML tags leads to XSS vulnerabilities in various... |
| CVE-2017-11655 | HIGH | 7.5 | 2.5% | Jul 26, 2017 | A memory leak was found in the way SIPcrack 0.2 handled processing of SIP traffic, because a lines array was mismanaged.... |
| CVE-2017-11654 | MEDIUM | 5.9 | 2.0% | Jul 26, 2017 | An out-of-bounds read and write flaw was found in the way SIPcrack 0.2 processed SIP traffic, because 0x00 termination o... |
| CVE-2017-6005 | — | — | 0.3% | Jul 26, 2017 | Waves MaxxAudio, as installed on Dell laptops, adds a "WavesSysSvc" Windows service with File Version 1.1.6.0. This serv... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now