2017 CVE Vulnerabilities

17,105 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-9304libyara/re.c in the regexp module in YARA 3.5.0 allows remote attackers to cause a denial of service (stack consumption)...
CVE-2017-8782The readString function in util/read.c and util/old/read.c in libming 0.4.8 allows remote attackers to cause a denial of...
CVE-2017-8402PivotX 2.3.11 allows remote authenticated users to execute arbitrary PHP code via vectors involving an upload of a .htac...
CVE-2017-7511poppler since version 0.17.3 has been vulnerable to NULL pointer dereference in pdfunite triggered by specially crafted ...
CVE-2017-7502Null pointer dereference vulnerability in NSS since 3.24.0 was found when server receives empty SSLv2 messages resulting...
CVE-2017-7494CRITICAL9.8Samba since version 3.5.0 and before 4.6.4, 4.5.10 and 4.4.14 is vulnerable to remote code execution vulnerability, allo...
CVE-2017-2311On Juniper Networks Junos Space versions prior to 16.1R1, an unauthenticated remote attacker with network access to Juno...
CVE-2017-2310A firewall bypass vulnerability in the host based firewall of Juniper Networks Junos Space versions prior to 16.1R1 may ...
CVE-2017-2309On Juniper Networks Junos Space versions prior to 16.1R1 when certificate based authentication is enabled for the Junos ...
CVE-2017-2308An XML External Entity Injection vulnerability in Juniper Networks Junos Space versions prior to 16.1R1 may allow an aut...
CVE-2017-2307A reflected cross site scripting vulnerability in the administrative interface of Juniper Networks Junos Space versions ...
CVE-2017-2306On Juniper Networks Junos Space versions prior to 16.1R1, due to an insufficient authorization check, readonly users on ...
CVE-2017-2305On Juniper Networks Junos Space versions prior to 16.1R1, due to an insufficient authorization check, readonly users on ...
CVE-2017-2304Juniper Networks QFX3500, QFX3600, QFX5100, QFX5200, EX4300 and EX4600 devices running Junos OS 14.1X53 prior to 14.1X53...
CVE-2017-2303On Juniper Networks products or platforms running Junos OS 12.1X46 prior to 12.1X46-D50, 12.1X47 prior to 12.1X47-D40, 1...
CVE-2017-2302On Juniper Networks products or platforms running Junos OS 12.1X46 prior to 12.1X46-D55, 12.1X47 prior to 12.1X47-D45, 1...
CVE-2017-2301On Juniper Networks products or platforms running Junos OS 11.4 prior to 11.4R13-S3, 12.1X46 prior to 12.1X46-D60, 12.3 ...
CVE-2017-2300On Juniper Networks SRX Series Services Gateways chassis clusters running Junos OS 12.1X46 prior to 12.1X46-D65, 12.3X48...
CVE-2017-9303Laravel 5.4.x before 5.4.22 does not properly constrain the host portion of a password-reset URL, which makes it easier ...
CVE-2017-9302RealPlayer 16.0.2.32 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) v...
CVE-2017-9301plugins\audio_filter\libmpgatofixed32_plugin.dll in VideoLAN VLC media player 2.2.4 allows remote attackers to cause a d...
CVE-2017-9300plugins\codec\libflac_plugin.dll in VideoLAN VLC media player 2.2.4 allows remote attackers to cause a denial of service...
CVE-2017-9299Open Ticket Request System (OTRS) 3.3.9 has XSS in index.pl?Action=AgentStats requests, as demonstrated by OrderBy=[XSS]...
CVE-2017-9298Cross-site scripting vulnerability in Hitachi Device Manager before 8.5.2-01 and Hitachi Replication Manager before 8.5....
CVE-2017-9297Open Redirect vulnerability in Hitachi Device Manager before 8.5.2-01 allows remote attackers to redirect users to arbit...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now