2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-0665 | — | — | 0.4% | Jul 6, 2017 | A elevation of privilege vulnerability in the Android framework. Product: Android. Versions: 4.4.4, 5.0.2, 5.1.1, 6.0, 6... |
| CVE-2017-0664 | — | — | 0.4% | Jul 6, 2017 | A elevation of privilege vulnerability in the Android framework. Product: Android. Versions: 5.0.2, 5.1.1, 6.0, 6.0.1, 7... |
| CVE-2017-9524 | HIGH | 7.5 | 4.1% | Jul 6, 2017 | The qemu-nbd server in QEMU (aka Quick Emulator), when built with the Network Block Device (NBD) Server support, allows ... |
| CVE-2017-8932 | — | — | 2.2% | Jul 6, 2017 | A bug in the standard library ScalarMult implementation of curve P-256 for amd64 architectures in Go before 1.7.6 and 1.... |
| CVE-2017-8290 | — | — | 1.4% | Jul 6, 2017 | A potential Buffer Overflow Vulnerability (from a BB Code handling issue) has been identified in TeamSpeak Server versio... |
| CVE-2017-10973 | — | — | 0.8% | Jul 6, 2017 | In FineCMS before 2017-07-06, application/lib/ajax/get_image_data.php has SSRF, related to requests for non-image files ... |
| CVE-2017-10967 | — | — | 0.8% | Jul 6, 2017 | In FineCMS before 2017-07-06, application\core\controller\config.php allows XSS in the (1) key_name, (2) key_value, and ... |
| CVE-2017-10976 | — | — | 1.1% | Jul 6, 2017 | When SWFTools 0.9.2 processes a crafted file in ttftool, it can lead to a heap-based buffer over-read in the readBlock()... |
| CVE-2017-1236 | — | — | 1.4% | Jul 6, 2017 | IBM WebSphere MQ 9.0.2 could allow an authenticated user to potentially cause a denial of service by saving an incorrect... |
| CVE-2017-10975 | — | — | 0.8% | Jul 6, 2017 | Cross-site scripting (XSS) vulnerability in Lutim before 0.8 might allow remote attackers to inject arbitrary web script... |
| CVE-2017-10972 | — | — | 2.3% | Jul 6, 2017 | Uninitialized data in endianness conversion in the XEvent handling of the X.Org X Server before 2017-06-19 allowed authe... |
| CVE-2017-10971 | — | — | 3.9% | Jul 6, 2017 | In the X.Org X server before 2017-06-19, a user authenticated to an X Session could crash or execute code in the context... |
| CVE-2017-10970 | — | — | 0.6% | Jul 6, 2017 | Cross-site scripting (XSS) vulnerability in link.php in Cacti 1.1.12 allows remote anonymous users to inject arbitrary w... |
| CVE-2017-6714 | — | — | 4.2% | Jul 6, 2017 | A vulnerability in the AutoIT service of Cisco Ultra Services Framework Staging Server could allow an unauthenticated, r... |
| CVE-2017-6713 | — | — | 2.9% | Jul 6, 2017 | A vulnerability in the Play Framework of Cisco Elastic Services Controller (ESC) could allow an unauthenticated, remote ... |
| CVE-2017-6712 | — | — | 2.0% | Jul 6, 2017 | A vulnerability in certain commands of Cisco Elastic Services Controller could allow an authenticated, remote attacker t... |
| CVE-2017-6711 | — | — | 1.6% | Jul 6, 2017 | A vulnerability in the Ultra Automation Service (UAS) of the Cisco Ultra Services Framework could allow an unauthenticat... |
| CVE-2017-6709 | — | — | 1.3% | Jul 6, 2017 | A vulnerability in the AutoVNF tool for the Cisco Ultra Services Framework could allow an unauthenticated, remote attack... |
| CVE-2017-6708 | — | — | 1.5% | Jul 6, 2017 | A vulnerability in the symbolic link (symlink) creation functionality of the AutoVNF tool for the Cisco Ultra Services F... |
| CVE-2017-6707 | — | — | 0.8% | Jul 6, 2017 | A vulnerability in the CLI command-parsing code of the Cisco StarOS operating system for Cisco ASR 5000 Series 11.0 thro... |
| CVE-2017-9927 | — | — | 1.3% | Jul 5, 2017 | In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have un... |
| CVE-2017-9926 | — | — | 1.3% | Jul 5, 2017 | In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to cause a denial of service or possibly have un... |
| CVE-2017-9925 | — | — | 2.0% | Jul 5, 2017 | In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of s... |
| CVE-2017-9924 | — | — | 2.0% | Jul 5, 2017 | In SWFTools 2013-04-09-1007 on Windows, png2swf allows remote attackers to execute arbitrary code or cause a denial of s... |
| CVE-2017-9923 | — | — | 0.6% | Jul 5, 2017 | IrfanView version 4.44 (32bit) with TOOLS Plugin 4.50 might allow attackers to cause a denial of service or execute arbi... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now