2017 CVE Vulnerabilities

17,105 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-9036HIGH7.8Trend Micro ServerProtect for Linux 3.0 before CP 1531 allows local users to gain privileges by leveraging an unrestrict...
CVE-2017-9035HIGH7.4Trend Micro ServerProtect for Linux 3.0 before CP 1531 allows attackers to eavesdrop and tamper with updates by leveragi...
CVE-2017-9034CRITICAL9.8Trend Micro ServerProtect for Linux 3.0 before CP 1531 allows attackers to write to arbitrary files and consequently exe...
CVE-2017-9033HIGH8.8Cross-site request forgery (CSRF) vulnerability in Trend Micro ServerProtect for Linux 3.0 before CP 1531 allows remote ...
CVE-2017-9032MEDIUM6.1Multiple cross-site scripting (XSS) vulnerabilities in Trend Micro ServerProtect for Linux 3.0 before CP 1531 allow remo...
CVE-2017-7439NetApp OnCommand Unified Manager Core Package 5.x before 5.2.2P1 might allow remote attackers to obtain sensitive inform...
CVE-2017-7236SQL injection vulnerability in NetApp OnCommand Unified Manager Core Package 5.x before 5.2.2P1 allows remote attackers ...
CVE-2017-5868CRLF injection vulnerability in the web interface in OpenVPN Access Server 2.1.4 allows remote attackers to inject arbit...
CVE-2017-9230HIGH7.5The Bitcoin Proof-of-Work algorithm does not consider a certain attack methodology related to 80-byte block headers with...
CVE-2017-9229HIGH7.5An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7...
CVE-2017-9228CRITICAL9.8An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7...
CVE-2017-9227CRITICAL9.8An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7...
CVE-2017-9226CRITICAL9.8An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7...
CVE-2017-9225An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7...
CVE-2017-9224CRITICAL9.8An issue was discovered in Oniguruma 6.2.0, as used in Oniguruma-mod in Ruby through 2.4.1 and mbstring in PHP through 7...
CVE-2017-2824An exploitable code execution vulnerability exists in the trapper command functionality of Zabbix Server 2.4.X. A specia...
CVE-2017-2823HIGH7.8A use-after-free vulnerability exists in the .ISO parsing functionality of PowerISO 6.8. A specially crafted .ISO file c...
CVE-2017-2819HIGH8.8An exploitable heap-based buffer overflow exists in the Hangul Word Processor component (version 9.6.1.4350) of Hancom T...
CVE-2017-2817HIGH8.8A stack buffer overflow vulnerability exists in the ISO parsing functionality of Power Software Ltd PowerISO 6.8. A spec...
CVE-2017-2801MEDIUM6.5A programming error exists in a way Randombit Botan cryptographic library version 2.0.1 implements x500 string compariso...
CVE-2017-2800CRITICAL9.8A specially crafted x509 certificate can cause a single out of bounds byte overwrite in wolfSSL through 3.10.2 resulting...
CVE-2017-2799HIGH8.3An exploitable heap corruption vulnerability exists in the AddSst functionality of Antenna House DMC HTMLFilter as used ...
CVE-2017-2798HIGH8.3An exploitable heap corruption vulnerability exists in the GetIndexArray functionality of Antenna House DMC HTMLFilter a...
CVE-2017-9217HIGH7.5systemd-resolved through 233 allows remote attackers to cause a denial of service (daemon crash) via a crafted DNS respo...
CVE-2017-9216MEDIUM6.5libjbig2dec.a in Artifex jbig2dec 0.13, as used in MuPDF and Ghostscript, has a NULL pointer dereference in the jbig2_hu...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now