2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-8579 | — | — | 1.2% | Jun 29, 2017 | The DirectX component in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an authenticated at... |
| CVE-2017-8576 | — | — | 1.2% | Jun 29, 2017 | The graphics component in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an authenticated a... |
| CVE-2017-8575 | — | — | 3.3% | Jun 29, 2017 | The kernel in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an authenticated attacker to o... |
| CVE-2017-8558 | — | — | 43.6% | Jun 29, 2017 | The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on 32-bit versions of Micr... |
| CVE-2017-8554 | — | — | 2.0% | Jun 29, 2017 | The kernel in Microsoft Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Serve... |
| CVE-2017-1310 | — | — | 1.7% | Jun 29, 2017 | IBM Informix Dynamic Server 12.1 could allow an authenticated user to cause a buffer overflow that would write large ass... |
| CVE-2017-10673 | MEDIUM | 6.1 | 0.7% | Jun 29, 2017 | admin/profile.php in GetSimple CMS 3.x has XSS in a name field. |
| CVE-2017-10672 | CRITICAL | 9.8 | 7.9% | Jun 29, 2017 | Use-after-free in the XML-LibXML module through 2.0129 for Perl allows remote attackers to execute arbitrary code by con... |
| CVE-2017-10671 | HIGH | 7.8 | 1.5% | Jun 29, 2017 | Heap-based Buffer Overflow in the de_dotdot function in libhttpd.c in sthttpd before 2.27.1 allows remote attackers to c... |
| CVE-2017-10667 | — | — | 0.6% | Jun 29, 2017 | In index.php in Zen Cart 1.6.0, the products_id parameter can cause XSS. |
| CVE-2017-1106 | — | — | 0.7% | Jun 28, 2017 | IBM Curam Social Program Management 5.2, 6.0, and 7.0 is vulnerable to cross-site scripting. This vulnerability allows u... |
| CVE-2017-7686 | — | — | 3.0% | Jun 28, 2017 | Apache Ignite 1.0.0-RC3 to 2.0 uses an update notifier component to update the users about new project releases that inc... |
| CVE-2017-5241 | — | — | 0.9% | Jun 28, 2017 | Biscom Secure File Transfer versions 5.0.0.0 trough 5.1.1024 are vulnerable to post-authentication persistent cross-site... |
| CVE-2017-9998 | MEDIUM | 6.5 | 2.0% | Jun 28, 2017 | The _dwarf_decode_s_leb128_chk function in dwarf_leb.c in libdwarf through 2017-06-28 allows remote attackers to cause a... |
| CVE-2017-9996 | — | — | 1.8% | Jun 28, 2017 | The cdxl_decode_frame function in libavcodec/cdxl.c in FFmpeg 2.8.x before 2.8.12, 3.0.x before 3.0.8, 3.1.x before 3.1.... |
| CVE-2017-9995 | — | — | 1.6% | Jun 28, 2017 | libavcodec/scpr.c in FFmpeg 3.3 before 3.3.1 does not properly validate height and width data, which allows remote attac... |
| CVE-2017-9994 | — | — | 1.8% | Jun 28, 2017 | libavcodec/webp.c in FFmpeg before 2.8.12, 3.0.x before 3.0.8, 3.1.x before 3.1.8, 3.2.x before 3.2.5, and 3.3.x before ... |
| CVE-2017-9993 | — | — | 16.4% | Jun 28, 2017 | FFmpeg before 2.8.12, 3.0.x and 3.1.x before 3.1.9, 3.2.x before 3.2.6, and 3.3.x before 3.3.2 does not properly restric... |
| CVE-2017-9992 | — | — | 2.8% | Jun 28, 2017 | Heap-based buffer overflow in the decode_dds1 function in libavcodec/dfa.c in FFmpeg before 2.8.12, 3.0.x before 3.0.8, ... |
| CVE-2017-9991 | — | — | 1.8% | Jun 28, 2017 | Heap-based buffer overflow in the xwd_decode_frame function in libavcodec/xwddec.c in FFmpeg before 2.8.12, 3.0.x before... |
| CVE-2017-9990 | — | — | 2.6% | Jun 28, 2017 | Stack-based buffer overflow in the color_string_to_rgba function in libavcodec/xpmdec.c in FFmpeg 3.3 before 3.3.1 allow... |
| CVE-2017-9989 | — | — | 2.0% | Jun 28, 2017 | util/outputtxt.c in libming 0.4.8 mishandles memory allocation. A crafted input will lead to a remote denial of service ... |
| CVE-2017-9988 | — | — | 2.0% | Jun 28, 2017 | The readEncUInt30 function in util/read.c in libming 0.4.8 mishandles memory allocation. A crafted input will lead to a ... |
| CVE-2017-9987 | — | — | 2.3% | Jun 28, 2017 | There is a heap-based buffer overflow in the function hpel_motion in mpegvideo_motion.c in libav 12.1. A crafted input c... |
| CVE-2017-9986 | — | — | 0.4% | Jun 28, 2017 | The intr function in sound/oss/msnd_pinnacle.c in the Linux kernel through 4.11.7 allows local users to cause a denial o... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now