2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-6551 | — | — | 3.5% | May 2, 2017 | Pexip Infinity before 14.2 allows remote attackers to cause a denial of service (service restart) or execute arbitrary c... |
| CVE-2017-5689 | CRITICAL | 9.8 | 92.2% | May 2, 2017 | An unprivileged network attacker could gain system privileges to provisioned Intel manageability SKUs: Intel Active Mana... |
| CVE-2017-8403 | — | — | 0.8% | May 1, 2017 | 360fly 4K cameras allow unauthenticated Wi-Fi password changes and complete access with REST by using the Bluetooth Low ... |
| CVE-2017-8401 | — | — | 1.1% | May 1, 2017 | In SWFTools 0.9.2, an out-of-bounds read of heap data can occur in the function png_load() in lib/png.c:724. This issue ... |
| CVE-2017-8400 | — | — | 2.1% | May 1, 2017 | In SWFTools 0.9.2, an out-of-bounds write of heap data can occur in the function png_load() in lib/png.c:755. This issue... |
| CVE-2017-6565 | — | — | 1.0% | May 1, 2017 | On Franklin Fueling Systems TS-550 evo 2.3.0.7332 devices, the roleDiag user, which can be obtained by exploiting CVE-20... |
| CVE-2017-6564 | — | — | 0.8% | May 1, 2017 | On Franklin Fueling Systems TS-550 evo 2.3.0.7332 devices, the Guest user, which contains the lowest privileges, can pos... |
| CVE-2017-8399 | — | — | 3.1% | May 1, 2017 | PCRE2 before 10.30 has an out-of-bounds write caused by a stack-based buffer overflow in pcre2_match.c, related to a "pa... |
| CVE-2017-8398 | — | — | 2.0% | May 1, 2017 | dwarf.c in GNU Binutils 2.28 is vulnerable to an invalid read of size 1 during dumping of debug information from a corru... |
| CVE-2017-8397 | — | — | 1.8% | May 1, 2017 | The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid ... |
| CVE-2017-8396 | — | — | 1.8% | May 1, 2017 | The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid ... |
| CVE-2017-8395 | — | — | 1.9% | May 1, 2017 | The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid ... |
| CVE-2017-8394 | — | — | 1.8% | May 1, 2017 | The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid ... |
| CVE-2017-8393 | — | — | 1.9% | May 1, 2017 | The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to a global bu... |
| CVE-2017-8392 | — | — | 1.5% | May 1, 2017 | The Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.28, is vulnerable to an invalid ... |
| CVE-2017-8388 | — | — | 1.5% | May 1, 2017 | GeniXCMS 1.0.2 allows remote attackers to bypass the alertDanger MSG_USER_EMAIL_EXIST protection mechanism via a registe... |
| CVE-2017-8377 | — | — | 1.5% | May 1, 2017 | GeniXCMS 1.0.2 has SQL Injection in inc/lib/Control/Backend/menus.control.php via the menuid parameter. |
| CVE-2017-8376 | — | — | 0.6% | May 1, 2017 | GeniXCMS 1.0.2 has XSS triggered by an authenticated comment that is mishandled during a mouse operation by an administr... |
| CVE-2017-6128 | — | — | 1.4% | May 1, 2017 | An attacker may be able to cause a denial-of-service (DoS) attack against the sshd component in F5 BIG-IP, Enterprise Ma... |
| CVE-2017-5631 | — | — | 4.5% | May 1, 2017 | An issue was discovered in KMCIS CaseAware. Reflected cross site scripting is present in the user parameter (i.e., "usr"... |
| CVE-2017-8385 | — | — | 0.8% | May 1, 2017 | Craft CMS before 2.6.2976 does not prevent modification of the URL in a forgot-password email message. |
| CVE-2017-8384 | — | — | 0.7% | May 1, 2017 | Craft CMS before 2.6.2976 allows XSS attacks because an array returned by HttpRequestService::getSegments() and getActio... |
| CVE-2017-8383 | — | — | 0.9% | May 1, 2017 | Craft CMS before 2.6.2976 does not properly restrict viewing the contents of files in the craft/app/ folder. |
| CVE-2017-8378 | — | — | 2.2% | May 1, 2017 | Heap-based buffer overflow in the PdfParser::ReadObjects function in base/PdfParser.cpp in PoDoFo 0.9.5 allows remote at... |
| CVE-2017-8374 | — | — | 2.2% | May 1, 2017 | The mad_bit_skip function in bit.c in Underbit MAD libmad 0.15.1b allows remote attackers to cause a denial of service (... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now