2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-9304 | — | — | 1.8% | May 31, 2017 | libyara/re.c in the regexp module in YARA 3.5.0 allows remote attackers to cause a denial of service (stack consumption)... |
| CVE-2017-8782 | — | — | 1.5% | May 31, 2017 | The readString function in util/read.c and util/old/read.c in libming 0.4.8 allows remote attackers to cause a denial of... |
| CVE-2017-8402 | — | — | 1.3% | May 31, 2017 | PivotX 2.3.11 allows remote authenticated users to execute arbitrary PHP code via vectors involving an upload of a .htac... |
| CVE-2017-7511 | — | — | 1.1% | May 30, 2017 | poppler since version 0.17.3 has been vulnerable to NULL pointer dereference in pdfunite triggered by specially crafted ... |
| CVE-2017-7502 | — | — | 4.3% | May 30, 2017 | Null pointer dereference vulnerability in NSS since 3.24.0 was found when server receives empty SSLv2 messages resulting... |
| CVE-2017-7494 | CRITICAL | 9.8 | 99.4% | May 30, 2017 | Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allo... |
| CVE-2017-2311 | — | — | 1.3% | May 30, 2017 | On Juniper Networks Junos Space versions prior to 16.1R1, an unauthenticated remote attacker with network access to Juno... |
| CVE-2017-2310 | — | — | 1.1% | May 30, 2017 | A firewall bypass vulnerability in the host based firewall of Juniper Networks Junos Space versions prior to 16.1R1 may ... |
| CVE-2017-2309 | — | — | 0.8% | May 30, 2017 | On Juniper Networks Junos Space versions prior to 16.1R1 when certificate based authentication is enabled for the Junos ... |
| CVE-2017-2308 | — | — | 1.2% | May 30, 2017 | An XML External Entity Injection vulnerability in Juniper Networks Junos Space versions prior to 16.1R1 may allow an aut... |
| CVE-2017-2307 | — | — | 0.9% | May 30, 2017 | A reflected cross site scripting vulnerability in the administrative interface of Juniper Networks Junos Space versions ... |
| CVE-2017-2306 | — | — | 1.6% | May 30, 2017 | On Juniper Networks Junos Space versions prior to 16.1R1, due to an insufficient authorization check, readonly users on ... |
| CVE-2017-2305 | — | — | 1.1% | May 30, 2017 | On Juniper Networks Junos Space versions prior to 16.1R1, due to an insufficient authorization check, readonly users on ... |
| CVE-2017-2304 | — | — | 1.8% | May 30, 2017 | Juniper Networks QFX3500, QFX3600, QFX5100, QFX5200, EX4300 and EX4600 devices running Junos OS 14.1X53 prior to 14.1X53... |
| CVE-2017-2303 | — | — | 2.1% | May 30, 2017 | On Juniper Networks products or platforms running Junos OS 12.1X46 prior to 12.1X46-D50, 12.1X47 prior to 12.1X47-D40, 1... |
| CVE-2017-2302 | — | — | 2.1% | May 30, 2017 | On Juniper Networks products or platforms running Junos OS 12.1X46 prior to 12.1X46-D55, 12.1X47 prior to 12.1X47-D45, 1... |
| CVE-2017-2301 | — | — | 2.1% | May 30, 2017 | On Juniper Networks products or platforms running Junos OS 11.4 prior to 11.4R13-S3, 12.1X46 prior to 12.1X46-D60, 12.3 ... |
| CVE-2017-2300 | — | — | 1.8% | May 30, 2017 | On Juniper Networks SRX Series Services Gateways chassis clusters running Junos OS 12.1X46 prior to 12.1X46-D65, 12.3X48... |
| CVE-2017-9303 | — | — | 1.0% | May 29, 2017 | Laravel 5.4.x before 5.4.22 does not properly constrain the host portion of a password-reset URL, which makes it easier ... |
| CVE-2017-9302 | — | — | 1.7% | May 29, 2017 | RealPlayer 16.0.2.32 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) v... |
| CVE-2017-9301 | — | — | 2.9% | May 29, 2017 | plugins\audio_filter\libmpgatofixed32_plugin.dll in VideoLAN VLC media player 2.2.4 allows remote attackers to cause a d... |
| CVE-2017-9300 | — | — | 3.3% | May 29, 2017 | plugins\codec\libflac_plugin.dll in VideoLAN VLC media player 2.2.4 allows remote attackers to cause a denial of service... |
| CVE-2017-9299 | — | — | 0.8% | May 29, 2017 | Open Ticket Request System (OTRS) 3.3.9 has XSS in index.pl?Action=AgentStats requests, as demonstrated by OrderBy=[XSS]... |
| CVE-2017-9298 | — | — | 0.6% | May 29, 2017 | Cross-site scripting vulnerability in Hitachi Device Manager before 8.5.2-01 and Hitachi Replication Manager before 8.5.... |
| CVE-2017-9297 | — | — | 0.9% | May 29, 2017 | Open Redirect vulnerability in Hitachi Device Manager before 8.5.2-01 allows remote attackers to redirect users to arbit... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now