2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-11347 | — | — | 1.7% | Jul 17, 2017 | Authenticated Code Execution Vulnerability in MetInfo 5.3.17 allows a remote authenticated attacker to generate a PHP sc... |
| CVE-2017-11346 | — | — | 43.3% | Jul 17, 2017 | Zoho ManageEngine Desktop Central before build 100092 allows remote attackers to execute arbitrary code via vectors invo... |
| CVE-2017-11345 | — | — | 1.8% | Jul 17, 2017 | Stack buffer overflow in networkmap in Asuswrt-Merlin firmware for ASUS devices and ASUS firmware for ASUS RT-AC5300, RT... |
| CVE-2017-11344 | — | — | 2.8% | Jul 17, 2017 | Global buffer overflow in networkmap in Asuswrt-Merlin firmware for ASUS devices and ASUS firmware for ASUS RT-AC5300, R... |
| CVE-2017-11343 | — | — | 0.9% | Jul 17, 2017 | Due to an incomplete fix for CVE-2012-6125, all versions of CHICKEN Scheme up to and including 4.12.0 are vulnerable to ... |
| CVE-2017-11342 | — | — | 1.2% | Jul 17, 2017 | There is an illegal address access in ast.cpp of LibSass 3.4.5. A crafted input will lead to a remote denial of service ... |
| CVE-2017-11341 | — | — | 1.7% | Jul 17, 2017 | There is a heap based buffer over-read in lexer.hpp of LibSass 3.4.5. A crafted input will lead to a remote denial of se... |
| CVE-2017-11340 | — | — | 1.4% | Jul 17, 2017 | There is a Segmentation fault in the XmpParser::terminate() function in Exiv2 0.26, related to an exit call. A Crafted i... |
| CVE-2017-11339 | — | — | 1.1% | Jul 17, 2017 | There is a heap-based buffer overflow in the Image::printIFDStructure function of image.cpp in Exiv2 0.26. A Crafted inp... |
| CVE-2017-11338 | — | — | 1.4% | Jul 17, 2017 | There is an infinite loop in the Exiv2::Image::printIFDStructure function of image.cpp in Exiv2 0.26. A crafted input wi... |
| CVE-2017-11337 | — | — | 1.4% | Jul 17, 2017 | There is an invalid free in the Action::TaskFactory::cleanup function of actions.cpp in Exiv2 0.26. A crafted input will... |
| CVE-2017-11336 | — | — | 1.4% | Jul 17, 2017 | There is a heap-based buffer over-read in the Image::printIFDStructure function in image.cpp in Exiv2 0.26. A Crafted in... |
| CVE-2017-11335 | — | — | 3.6% | Jul 17, 2017 | There is a heap based buffer overflow in tools/tiff2pdf.c of LibTIFF 4.0.8 via a PlanarConfig=Contig image, which causes... |
| CVE-2017-11329 | — | — | 1.2% | Jul 17, 2017 | GLPI before 9.1.5 allows SQL injection via an ajax/getDropdownValue.php request with an entity_restrict parameter that i... |
| CVE-2017-11328 | — | — | 0.7% | Jul 17, 2017 | Heap buffer overflow in the yr_object_array_set_item() function in object.c in YARA 3.x allows a denial-of-service attac... |
| CVE-2017-11318 | — | — | 1.3% | Jul 17, 2017 | Cobian Backup 11 client allows man-in-the-middle attackers to add and execute new backup tasks when the master server is... |
| CVE-2017-11311 | — | — | 1.7% | Jul 17, 2017 | soundlib/Load_psm.cpp in OpenMPT through 1.26.12.00 and libopenmpt before 0.2.8461-beta26 has a heap buffer overflow wit... |
| CVE-2017-10605 | HIGH | 8.6 | 1.6% | Jul 17, 2017 | On all vSRX and SRX Series devices, when the DHCP or DHCP relay is configured, specially crafted packet might cause the ... |
| CVE-2017-10604 | MEDIUM | 5.3 | 0.9% | Jul 17, 2017 | When the device is configured to perform account lockout with a defined period of time, any unauthenticated user attempt... |
| CVE-2017-10603 | HIGH | 7 | 0.4% | Jul 17, 2017 | An XML injection vulnerability in Junos OS CLI can allow a locally authenticated user to elevate privileges and run arbi... |
| CVE-2017-10602 | HIGH | 7 | 0.4% | Jul 17, 2017 | A buffer overflow vulnerability in Junos OS CLI may allow a local authenticated user with read only privileges and acces... |
| CVE-2017-10601 | CRITICAL | 9.8 | 1.8% | Jul 17, 2017 | A specific device configuration can result in a commit failure condition. When this occurs, a user is logged in without ... |
| CVE-2017-1000363 | HIGH | 7.8 | 0.6% | Jul 17, 2017 | Linux drivers/char/lp.c Out-of-Bounds Write. Due to a missing bounds check, and the fact that parport_ptr integer is sta... |
| CVE-2017-1000362 | — | — | 1.7% | Jul 17, 2017 | The re-key admin monitor was introduced in Jenkins 1.498 and re-encrypted all secrets in JENKINS_HOME with a new key. It... |
| CVE-2017-1000081 | CRITICAL | 9.8 | 3.0% | Jul 17, 2017 | Linux foundation ONOS 1.9.0 is vulnerable to unauthenticated upload of applications (.oar) resulting in remote code exec... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now