2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-9352 | — | — | 2.9% | Jun 2, 2017 | In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the Bazaar dissector could go into an infinite loop. This was addressed... |
| CVE-2017-9351 | — | — | 2.8% | Jun 2, 2017 | In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the DHCP dissector could read past the end of a buffer. This was addres... |
| CVE-2017-9350 | — | — | 3.3% | Jun 2, 2017 | In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the openSAFETY dissector could crash or exhaust system memory. This was... |
| CVE-2017-9349 | — | — | 2.9% | Jun 2, 2017 | In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the DICOM dissector has an infinite loop. This was addressed in epan/di... |
| CVE-2017-9348 | — | — | 2.7% | Jun 2, 2017 | In Wireshark 2.2.0 to 2.2.6, the DOF dissector could read past the end of a buffer. This was addressed in epan/dissector... |
| CVE-2017-9347 | — | — | 14.2% | Jun 2, 2017 | In Wireshark 2.2.0 to 2.2.6, the ROS dissector could crash with a NULL pointer dereference. This was addressed in epan/d... |
| CVE-2017-9346 | — | — | 3.4% | Jun 2, 2017 | In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the SoulSeek dissector could go into an infinite loop. This was address... |
| CVE-2017-9345 | — | — | 3.0% | Jun 2, 2017 | In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the DNS dissector could go into an infinite loop. This was addressed in... |
| CVE-2017-9344 | — | — | 2.7% | Jun 2, 2017 | In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the Bluetooth L2CAP dissector could divide by zero. This was addressed ... |
| CVE-2017-9343 | — | — | 3.1% | Jun 2, 2017 | In Wireshark 2.2.0 to 2.2.6 and 2.0.0 to 2.0.12, the MSNIP dissector misuses a NULL pointer. This was addressed in epan/... |
| CVE-2017-9060 | MEDIUM | 5.5 | 0.4% | Jun 1, 2017 | Memory leak in the virtio_gpu_set_scanout function in hw/display/virtio-gpu.c in QEMU (aka Quick Emulator) allows local ... |
| CVE-2017-8386 | — | — | 11.7% | Jun 1, 2017 | git-shell in git before 2.4.12, 2.5.x before 2.5.6, 2.6.x before 2.6.7, 2.7.x before 2.7.5, 2.8.x before 2.8.5, 2.9.x be... |
| CVE-2017-7999 | — | — | 1.0% | Jun 1, 2017 | Atlassian Eucalyptus before 4.4.1, when in EDGE mode, allows remote authenticated users with certain privileges to cause... |
| CVE-2017-7384 | — | — | 0.8% | Jun 1, 2017 | Cross-site scripting (XSS) vulnerability in FlipBuilder Flip PDF allows remote attackers to inject arbitrary web script ... |
| CVE-2017-6512 | MEDIUM | 5.9 | 2.4% | Jun 1, 2017 | Race condition in the rmtree and remove_tree functions in the File-Path module before 2.13 for Perl allows attackers to ... |
| CVE-2017-3127 | — | — | 1.0% | Jun 1, 2017 | A Cross-Site Scripting vulnerability in Fortinet FortiGate 5.2.0 through 5.2.10 allows attacker to execute unauthorized ... |
| CVE-2017-9337 | — | — | 0.8% | Jun 1, 2017 | The Markdown on Save Improved plugin 2.5 for WordPress has a stored XSS vulnerability in the content of a post. |
| CVE-2017-9336 | — | — | 0.6% | Jun 1, 2017 | The WP Editor.MD plugin 1.6 for WordPress has a stored XSS vulnerability in the content of a post. |
| CVE-2017-9334 | HIGH | 7.5 | 1.5% | Jun 1, 2017 | An incorrect "pair?" check in the Scheme "length" procedure results in an unsafe pointer dereference in all CHICKEN Sche... |
| CVE-2017-9331 | — | — | 0.7% | Jun 1, 2017 | The Agenda component in Telaxus EPESI 1.8.2 and earlier has a Stored Cross-site Scripting (XSS) vulnerability in modules... |
| CVE-2017-5688 | — | — | 0.4% | May 31, 2017 | There is an escalation of privilege vulnerability in the Intel Solid State Drive Toolbox versions before 3.4.5 which all... |
| CVE-2017-4897 | — | — | 1.1% | May 31, 2017 | VMware Horizon DaaS before 7.0.0 contains a vulnerability that exists due to insufficient validation of data. An attacke... |
| CVE-2017-9307 | — | — | 0.9% | May 31, 2017 | SSRF vulnerability in remotedownload.php in Allen Disk 1.6 allows remote authenticated users to conduct port scans and a... |
| CVE-2017-9306 | — | — | 0.8% | May 31, 2017 | inc/SP/Html/Html.class.php in sysPass 2.1.9 allows remote attackers to bypass the XSS filter, as demonstrated by use of ... |
| CVE-2017-9305 | — | — | 0.9% | May 31, 2017 | lib/core/TikiFilter/PreventXss.php in Tiki Wiki CMS Groupware 16.2 allows remote attackers to bypass the XSS filter via ... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now