2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-11582 | — | — | 1.5% | Jul 24, 2017 | dayrui FineCms 5.0.9 has SQL Injection via the num parameter in an action=related or action=tags request to libraries/Te... |
| CVE-2017-11581 | — | — | 0.7% | Jul 24, 2017 | dayrui FineCms 5.0.9 has Cross Site Scripting (XSS) in admin/Login.php via a payload in the username field that does not... |
| CVE-2017-11577 | — | — | 1.2% | Jul 23, 2017 | FontForge 20161012 is vulnerable to a buffer over-read in getsid (parsettf.c) resulting in DoS or code execution via a c... |
| CVE-2017-11576 | — | — | 0.7% | Jul 23, 2017 | FontForge 20161012 does not ensure a positive size in a weight vector memcpy call in readcfftopdict (parsettf.c) resulti... |
| CVE-2017-11575 | — | — | 1.2% | Jul 23, 2017 | FontForge 20161012 is vulnerable to a buffer over-read in strnmatch (char.c) resulting in DoS or code execution via a cr... |
| CVE-2017-11574 | — | — | 1.4% | Jul 23, 2017 | FontForge 20161012 is vulnerable to a heap-based buffer overflow in readcffset (parsettf.c) resulting in DoS or code exe... |
| CVE-2017-11573 | — | — | 1.2% | Jul 23, 2017 | FontForge 20161012 is vulnerable to a buffer over-read in ValidatePostScriptFontName (parsettf.c) resulting in DoS or co... |
| CVE-2017-11572 | — | — | 1.2% | Jul 23, 2017 | FontForge 20161012 is vulnerable to a heap-based buffer over-read in readcfftopdicts (parsettf.c) resulting in DoS or co... |
| CVE-2017-11571 | — | — | 1.4% | Jul 23, 2017 | FontForge 20161012 is vulnerable to a stack-based buffer overflow in addnibble (parsettf.c) resulting in DoS or code exe... |
| CVE-2017-11570 | — | — | 1.3% | Jul 23, 2017 | FontForge 20161012 is vulnerable to a buffer over-read in umodenc (parsettf.c) resulting in DoS or code execution via a ... |
| CVE-2017-11569 | — | — | 1.4% | Jul 23, 2017 | FontForge 20161012 is vulnerable to a heap-based buffer over-read in readttfcopyrights (parsettf.c) resulting in DoS or ... |
| CVE-2017-11568 | — | — | 1.3% | Jul 23, 2017 | FontForge 20161012 is vulnerable to a heap-based buffer over-read in PSCharStringToSplines (psread.c) resulting in DoS o... |
| CVE-2017-11565 | — | — | 1.2% | Jul 23, 2017 | debian/tor.init in the Debian tor_0.2.9.11-1~deb9u1 package for Tor was designed to execute aa-exec from the standard sy... |
| CVE-2017-11556 | — | — | 1.2% | Jul 23, 2017 | There is a stack consumption vulnerability in the Parser::advanceToNextToken function in parser.cpp in LibSass 3.4.5. A ... |
| CVE-2017-11555 | — | — | 1.2% | Jul 23, 2017 | There is an illegal address access in the Eval::operator function in eval.cpp in LibSass 3.4.5. A crafted input will lea... |
| CVE-2017-11554 | — | — | 1.9% | Jul 23, 2017 | There is a stack consumption vulnerability in the lex function in parser.hpp (as used in sassc) in LibSass 3.4.5. A craf... |
| CVE-2017-11553 | — | — | 1.7% | Jul 23, 2017 | There is an illegal address access in the extend_alias_table function in localealias.c of Exiv2 0.26. A crafted input wi... |
| CVE-2017-11545 | — | — | — | Jul 23, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-11543. Reason: This candidate is a duplicate of ... |
| CVE-2017-11544 | — | — | — | Jul 23, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2017-11543. Reason: This candidate is a duplicate of ... |
| CVE-2017-11543 | — | — | 6.2% | Jul 23, 2017 | tcpdump 4.9.0 has a buffer overflow in the sliplink_print function in print-sl.c. |
| CVE-2017-11542 | — | — | 3.8% | Jul 23, 2017 | tcpdump 4.9.0 has a heap-based buffer over-read in the pimv1_print function in print-pim.c. |
| CVE-2017-11541 | — | — | 3.8% | Jul 23, 2017 | tcpdump 4.9.0 has a heap-based buffer over-read in the lldp_print function in print-lldp.c, related to util-print.c. |
| CVE-2017-11540 | — | — | 1.6% | Jul 23, 2017 | When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a heap-based buffer over-read in the GetPix... |
| CVE-2017-11539 | — | — | 2.0% | Jul 23, 2017 | When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a Memory Leak in the ReadOnePNGImage() func... |
| CVE-2017-11538 | — | — | 1.7% | Jul 23, 2017 | When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a Memory Leak in the WriteOnePNGImage() fun... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now