2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-7225 | — | — | 2.5% | Mar 22, 2017 | The find_nearest_line function in addr2line in GNU Binutils 2.28 does not handle the case where the main file name and t... |
| CVE-2017-7224 | — | — | 1.1% | Mar 22, 2017 | The find_nearest_line function in objdump in GNU Binutils 2.28 is vulnerable to an invalid write (of size 1) while disas... |
| CVE-2017-7223 | — | — | 2.0% | Mar 22, 2017 | GNU assembler in GNU Binutils 2.28 is vulnerable to a global buffer overflow (of size 1) while attempting to unget an EO... |
| CVE-2017-6971 | — | — | 16.2% | Mar 22, 2017 | AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 allow remote authenticated users to execute arbitrary comma... |
| CVE-2017-6970 | — | — | 1.7% | Mar 22, 2017 | AlienVault USM and OSSIM before 5.3.7 and NfSen before 1.3.8 allow local users to execute arbitrary commands in a privil... |
| CVE-2017-7222 | — | — | 0.8% | Mar 22, 2017 | A cross-site scripting (XSS) vulnerability in MantisBT before 2.1.1 allows remote attackers to inject arbitrary HTML or ... |
| CVE-2017-5874 | — | — | 0.7% | Mar 22, 2017 | CSRF exists on D-Link DIR-600M Rev. Cx devices before v3.05ENB01_beta_20170306. This can be used to bypass authenticatio... |
| CVE-2017-7215 | — | — | 1.8% | Mar 21, 2017 | Cross site scripting in some view elements in the index filter tool in app/webroot/js/misp2.4.68.js and the organisation... |
| CVE-2017-7214 | — | — | 2.3% | Mar 21, 2017 | An issue was discovered in exception_wrapper.py in OpenStack Nova 13.x through 13.1.3, 14.x through 14.0.4, and 15.x thr... |
| CVE-2017-6417 | — | — | 0.9% | Mar 21, 2017 | Code injection vulnerability in Avira Total Security Suite 15.0 (and earlier), Optimization Suite 15.0 (and earlier), In... |
| CVE-2017-6186 | — | — | 0.8% | Mar 21, 2017 | Code injection vulnerability in Bitdefender Total Security 12.0 (and earlier), Internet Security 12.0 (and earlier), and... |
| CVE-2017-5567 | — | — | 0.5% | Mar 21, 2017 | Code injection vulnerability in Avast Premier 12.3 (and earlier), Internet Security 12.3 (and earlier), Pro Antivirus 12... |
| CVE-2017-5566 | — | — | 0.6% | Mar 21, 2017 | Code injection vulnerability in AVG Ultimate 17.1 (and earlier), AVG Internet Security 17.1 (and earlier), and AVG AntiV... |
| CVE-2017-5565 | — | — | 0.7% | Mar 21, 2017 | Code injection vulnerability in Trend Micro Maximum Security 11.0 (and earlier), Internet Security 11.0 (and earlier), a... |
| CVE-2017-3850 | — | — | 2.5% | Mar 21, 2017 | A vulnerability in the Autonomic Networking Infrastructure (ANI) feature of Cisco IOS Software (15.4 through 15.6) and C... |
| CVE-2017-3849 | — | — | 0.8% | Mar 21, 2017 | A vulnerability in the Autonomic Networking Infrastructure (ANI) registrar feature of Cisco IOS Software (possibly 15.2 ... |
| CVE-2017-7210 | — | — | 1.2% | Mar 21, 2017 | objdump in GNU Binutils 2.28 is vulnerable to multiple heap-based buffer over-reads (of size 1 and size 8) while handlin... |
| CVE-2017-7209 | — | — | 1.2% | Mar 21, 2017 | The dump_section_as_bytes function in readelf in GNU Binutils 2.28 accesses a NULL pointer while reading section content... |
| CVE-2017-7208 | — | — | 1.1% | Mar 21, 2017 | The decode_residual function in libavcodec in libav 9.21 allows remote attackers to cause a denial of service (buffer ov... |
| CVE-2017-7207 | — | — | 2.3% | Mar 21, 2017 | The mem_get_bits_rectangle function in Artifex Software, Inc. Ghostscript 9.20 allows remote attackers to cause a denial... |
| CVE-2017-7206 | — | — | 1.0% | Mar 21, 2017 | The ff_h2645_extract_rbsp function in libavcodec in libav 9.21 allows remote attackers to cause a denial of service (hea... |
| CVE-2017-7205 | — | — | 0.9% | Mar 21, 2017 | A Cross-Site Scripting (XSS) was discovered in GamePanelX-V3 3.0.12. The vulnerability exists due to insufficient filtra... |
| CVE-2017-7204 | — | — | 0.7% | Mar 21, 2017 | A Cross-Site Scripting (XSS) was discovered in imdbphp 5.1.1. The vulnerability exists due to insufficient filtration of... |
| CVE-2017-7203 | — | — | 0.8% | Mar 21, 2017 | A Cross-Site Scripting (XSS) was discovered in ZoneMinder before 1.30.2. The vulnerability exists due to insufficient fi... |
| CVE-2017-7202 | — | — | 0.7% | Mar 21, 2017 | Multiple Cross-Site Scripting (XSS) were discovered in SLiMS 7 Cendana before 2017-03-16. The vulnerabilities exist due ... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now