2017 CVE Vulnerabilities

17,105 CVEs published in 2017.

CVE IDSeverityCVSSDescription
CVE-2017-5938Cross-site scripting (XSS) vulnerability in the nav_path function in lib/viewvc.py in ViewVC before 1.0.14 and 1.1.x bef...
CVE-2017-5584Cross-site scripting (XSS) vulnerability in the Management Web Interface in Palo Alto Networks PAN-OS 5.1, 6.x before 6....
CVE-2017-5583The Management Web Interface in Palo Alto Networks PAN-OS before 6.1.16, 7.0.x before 7.0.13, and 7.1.x before 7.1.8 all...
CVE-2017-6909An issue was discovered in Shimmie <= 2.5.1. The vulnerability exists due to insufficient filtration of user-supplied da...
CVE-2017-6908An issue was discovered in concrete5 <= 5.6.3.4. The vulnerability exists due to insufficient filtration of user-supplie...
CVE-2017-6907An issue was discovered in Open.GL before 2017-03-13. The vulnerability exists due to insufficient filtration of user-su...
CVE-2017-6906An issue was discovered in SiberianCMS before 4.10.0. The vulnerability exists due to insufficient filtration of user-s...
CVE-2017-6905An issue was discovered in concrete5 <= 5.6.3.4. The vulnerability exists due to insufficient filtration of user-supplie...
CVE-2017-6903In ioquake3 before 2017-03-14, the auto-downloading feature has insufficient content restrictions. This also affects Qua...
CVE-2017-3899SQL injection vulnerability in Intel Security Advanced Threat Defense (ATD) Linux 3.6.0 and earlier allows remote authen...
CVE-2017-6902Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ...
CVE-2017-6896Privilege escalation vulnerability on the DIGISOL DG-HR1400 1.00.02 wireless router enables an attacker to escalate from...
CVE-2017-6516A Local Privilege Escalation Vulnerability in MagniComp's Sysinfo before 10-H64 for Linux and UNIX platforms could allow...
CVE-2017-5985lxc-user-nic in Linux Containers (LXC) allows local users with a lxc-usernet allocation to create network interfaces on ...
CVE-2017-3003HIGH8.8Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable use after free vulnerability related to an intera...
CVE-2017-3002HIGH8.8Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable use after free vulnerability in the ActionScript2...
CVE-2017-3001HIGH8.8Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable use after free vulnerability related to garbage c...
CVE-2017-3000MEDIUM6.5Adobe Flash Player versions 24.0.0.221 and earlier have a vulnerability in the random number generator used for constant...
CVE-2017-2999HIGH8.8Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable memory corruption vulnerability in the Primetime ...
CVE-2017-2998HIGH8.8Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable memory corruption vulnerability in the Primetime ...
CVE-2017-2997HIGH8.8Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable buffer overflow / underflow vulnerability in the ...
CVE-2017-2983Adobe Shockwave versions 12.2.7.197 and earlier have an insecure library loading (DLL hijacking) vulnerability. Successf...
CVE-2017-6335The QuantumTransferMode function in coders/tiff.c in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause ...
CVE-2017-5957MEDIUM5.5Stack-based buffer overflow in the vrend_decode_set_framebuffer_state function in vrend_decode.c in virglrenderer before...
CVE-2017-5668bitlbee-libpurple before 3.5.1 allows remote attackers to cause a denial of service (NULL pointer dereference and crash)...

Check if your code is affected by 2017 CVEs

Strix scans your code and infrastructure for known vulnerabilities automatically.

Scan your code now