2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-6620 | — | — | 1.6% | May 3, 2017 | A vulnerability in the remote management access control list (ACL) feature of the Cisco CVR100W Wireless-N VPN Router co... |
| CVE-2017-7229 | — | — | 0.8% | May 3, 2017 | PGP/MIME encrypted messages injected into a Vaultive O365 (before 4.5.21) frontend via IMAP or SMTP have their Content-T... |
| CVE-2017-5481 | — | — | 1.9% | May 3, 2017 | Trend Micro OfficeScan 11.0 before SP1 CP 6325 and XG before CP 1352 allows remote authenticated users to gain privilege... |
| CVE-2017-7995 | — | — | 0.4% | May 3, 2017 | Xen PV guest before Xen 4.3 checked access permissions to MMIO ranges only after accessing them, allowing host PCI devic... |
| CVE-2017-5240 | — | — | 1.0% | May 3, 2017 | Editions of Rapid7 AppSpider Pro prior to version 6.14.060 contain a heap-based buffer overflow in the FLAnalyzer.exe co... |
| CVE-2017-5236 | — | — | 0.9% | May 3, 2017 | Editions of Rapid7 AppSpider Pro installers prior to version 6.14.060 contain a DLL preloading vulnerability, wherein it... |
| CVE-2017-8459 | MEDIUM | 5.3 | 0.7% | May 3, 2017 | Brave 0.12.4 has a Status Bar Obfuscation issue in which a redirection target is shown in a possibly unexpected way. NOT... |
| CVE-2017-8458 | — | — | 1.1% | May 3, 2017 | Brave 0.12.4 has a URI Obfuscation issue in which a string such as https://safe.example.com@unsafe.example.com/ is displ... |
| CVE-2017-8455 | — | — | 4.1% | May 3, 2017 | Foxit Reader before 8.2.1 and PhantomPDF before 8.2.1 have an out-of-bounds read that allows remote attackers to obtain ... |
| CVE-2017-8454 | — | — | 3.9% | May 3, 2017 | Foxit Reader before 8.2.1 and PhantomPDF before 8.2.1 have an out-of-bounds read that allows remote attackers to obtain ... |
| CVE-2017-8453 | — | — | 3.9% | May 3, 2017 | Foxit Reader before 8.2.1 and PhantomPDF before 8.2.1 have an out-of-bounds read that allows remote attackers to obtain ... |
| CVE-2017-7432 | — | — | 1.5% | May 3, 2017 | Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a webshell upload vulnerabi... |
| CVE-2017-7431 | — | — | 0.6% | May 3, 2017 | Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have persistent CSRF in object m... |
| CVE-2017-7430 | — | — | 1.0% | May 3, 2017 | Novell iManager 2.7.x before 2.7 SP7 Patch 10 HF1 and NetIQ iManager 3.x before 3.0.3.1 have a persistent XSS vulnerabil... |
| CVE-2017-7428 | — | — | 1.3% | May 3, 2017 | NetIQ iManager 3.x before 3.0.3.1 has an issue in the renegotiation of connection parameters with Tomcat. |
| CVE-2017-0331 | — | — | 0.6% | May 2, 2017 | An elevation of privilege vulnerability in the NVIDIA video driver could enable a local malicious application to execute... |
| CVE-2017-8421 | — | — | 1.0% | May 2, 2017 | The function coff_set_alignment_hook in coffcode.h in Binary File Descriptor (BFD) library (aka libbfd), as distributed ... |
| CVE-2017-7476 | — | — | 3.7% | May 2, 2017 | Gnulib before 2017-04-26 has a heap-based buffer overflow with the TZ environment variable. The error is in the save_abb... |
| CVE-2017-7216 | — | — | 1.2% | May 2, 2017 | The Management Web Interface in Palo Alto Networks PAN-OS before 7.1.9 allows remote authenticated users to obtain sensi... |
| CVE-2017-8419 | — | — | 1.6% | May 2, 2017 | LAME through 3.99.5 relies on the signed integer data type for values in a WAV or AIFF header, which allows remote attac... |
| CVE-2017-8418 | — | — | 0.4% | May 2, 2017 | RuboCop 0.48.1 and earlier does not use /tmp in safe way, allowing local users to exploit this to tamper with cache file... |
| CVE-2017-8112 | MEDIUM | 6.5 | 0.4% | May 2, 2017 | hw/scsi/vmw_pvscsi.c in QEMU (aka Quick Emulator) allows local guest OS privileged users to cause a denial of service (i... |
| CVE-2017-8086 | MEDIUM | 6.5 | 0.4% | May 2, 2017 | Memory leak in the v9fs_list_xattr function in hw/9pfs/9p-xattr.c in QEMU (aka Quick Emulator) allows local guest OS pri... |
| CVE-2017-7483 | HIGH | 7.5 | 2.1% | May 2, 2017 | Rxvt 2.7.10 is vulnerable to a denial of service attack by passing the value -2^31 inside a terminal escape code, which ... |
| CVE-2017-7440 | MEDIUM | 6.5 | 0.9% | May 2, 2017 | Kerio Connect 8.0.0 through 9.2.2, and Kerio Connect Client desktop application for Windows and Mac 9.2.0 through 9.2.2,... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now