2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-11537 | — | — | 1.9% | Jul 23, 2017 | When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a Floating Point Exception (FPE) in the Wri... |
| CVE-2017-11536 | — | — | 1.2% | Jul 23, 2017 | When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a Memory Leak in the WriteJP2Image() functi... |
| CVE-2017-11535 | — | — | 1.7% | Jul 23, 2017 | When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a heap-based buffer over-read in the WriteP... |
| CVE-2017-11534 | — | — | 0.9% | Jul 23, 2017 | When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a Memory Leak in the lite_font_map() functi... |
| CVE-2017-11533 | — | — | 1.9% | Jul 23, 2017 | When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a heap-based buffer over-read in the WriteU... |
| CVE-2017-11532 | — | — | 1.4% | Jul 23, 2017 | When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a Memory Leak in the WriteMPCImage() functi... |
| CVE-2017-11531 | — | — | 1.5% | Jul 23, 2017 | When ImageMagick 7.0.6-1 processes a crafted file in convert, it can lead to a Memory Leak in the WriteHISTOGRAMImage() ... |
| CVE-2017-11530 | — | — | 2.1% | Jul 23, 2017 | The ReadEPTImage function in coders/ept.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers t... |
| CVE-2017-11529 | — | — | 1.4% | Jul 23, 2017 | The ReadMATImage function in coders/mat.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers t... |
| CVE-2017-11528 | — | — | 1.9% | Jul 23, 2017 | The ReadDIBImage function in coders/dib.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers t... |
| CVE-2017-11527 | — | — | 1.8% | Jul 23, 2017 | The ReadDPXImage function in coders/dpx.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers t... |
| CVE-2017-11526 | — | — | 2.9% | Jul 23, 2017 | The ReadOneMNGImage function in coders/png.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attacker... |
| CVE-2017-11525 | — | — | 4.1% | Jul 23, 2017 | The ReadCINImage function in coders/cin.c in ImageMagick before 6.9.9-0 and 7.x before 7.0.6-1 allows remote attackers t... |
| CVE-2017-11524 | — | — | 3.2% | Jul 23, 2017 | The WriteBlob function in MagickCore/blob.c in ImageMagick before 6.9.8-10 and 7.x before 7.6.0-0 allows remote attacker... |
| CVE-2017-7336 | — | — | 2.5% | Jul 22, 2017 | A hard-coded account named 'upgrade' in Fortinet FortiWLM 8.3.0 and lower versions allows a remote attacker to log-in an... |
| CVE-2017-11523 | — | — | 3.0% | Jul 22, 2017 | The ReadTXTImage function in coders/txt.c in ImageMagick through 6.9.9-0 and 7.x through 7.0.6-1 allows remote attackers... |
| CVE-2017-11522 | — | — | 1.9% | Jul 22, 2017 | The WriteOnePNGImage function in coders/png.c in ImageMagick through 6.9.9-0 and 7.x through 7.0.6-1 allows remote attac... |
| CVE-2017-3222 | CRITICAL | 9.8 | 7.4% | Jul 22, 2017 | Hard-coded credentials in AmosConnect 8 allow remote attackers to gain full administrative privileges, including the abi... |
| CVE-2017-3221 | — | — | 3.5% | Jul 22, 2017 | Blind SQL injection in Inmarsat AmosConnect 8 login form allows remote attackers to access user credentials, including u... |
| CVE-2017-11521 | HIGH | 7.5 | 2.3% | Jul 22, 2017 | The SdpContents::Session::Medium::parse function in resip/stack/SdpContents.cxx in reSIProcate 1.10.2 allows remote atta... |
| CVE-2017-2277 | — | — | 1.1% | Jul 22, 2017 | WG-C10 v3.0.79 and earlier allows an attacker to bypass access restrictions to obtain or alter information stored in the... |
| CVE-2017-2276 | — | — | 1.9% | Jul 22, 2017 | Buffer overflow in WG-C10 v3.0.79 and earlier allows an attacker to execute arbitrary commands via unspecified vectors. |
| CVE-2017-2275 | — | — | 1.6% | Jul 22, 2017 | WG-C10 v3.0.79 and earlier allows an attacker to execute arbitrary OS commands via unspecified vectors. |
| CVE-2017-2274 | — | — | 0.9% | Jul 22, 2017 | Cross-site scripting vulnerability in WMR-433 firmware Ver.1.02 and earlier, WMR-433W firmware Ver.1.40 and earlier allo... |
| CVE-2017-2273 | — | — | 0.8% | Jul 22, 2017 | Cross-site request forgery (CSRF) vulnerability in WMR-433 firmware Ver.1.02 and earlier, WMR-433W firmware Ver.1.40 and... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now