2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-5938 | — | — | 1.3% | Mar 15, 2017 | Cross-site scripting (XSS) vulnerability in the nav_path function in lib/viewvc.py in ViewVC before 1.0.14 and 1.1.x bef... |
| CVE-2017-5584 | — | — | 0.8% | Mar 15, 2017 | Cross-site scripting (XSS) vulnerability in the Management Web Interface in Palo Alto Networks PAN-OS 5.1, 6.x before 6.... |
| CVE-2017-5583 | — | — | 1.5% | Mar 15, 2017 | The Management Web Interface in Palo Alto Networks PAN-OS before 6.1.16, 7.0.x before 7.0.13, and 7.1.x before 7.1.8 all... |
| CVE-2017-6909 | — | — | 0.8% | Mar 15, 2017 | An issue was discovered in Shimmie <= 2.5.1. The vulnerability exists due to insufficient filtration of user-supplied da... |
| CVE-2017-6908 | — | — | 1.2% | Mar 15, 2017 | An issue was discovered in concrete5 <= 5.6.3.4. The vulnerability exists due to insufficient filtration of user-supplie... |
| CVE-2017-6907 | — | — | 0.7% | Mar 15, 2017 | An issue was discovered in Open.GL before 2017-03-13. The vulnerability exists due to insufficient filtration of user-su... |
| CVE-2017-6906 | — | — | 0.7% | Mar 15, 2017 | An issue was discovered in SiberianCMS before 4.10.0. The vulnerability exists due to insufficient filtration of user-s... |
| CVE-2017-6905 | — | — | 1.0% | Mar 15, 2017 | An issue was discovered in concrete5 <= 5.6.3.4. The vulnerability exists due to insufficient filtration of user-supplie... |
| CVE-2017-6903 | — | — | 1.3% | Mar 14, 2017 | In ioquake3 before 2017-03-14, the auto-downloading feature has insufficient content restrictions. This also affects Qua... |
| CVE-2017-3899 | — | — | 1.7% | Mar 14, 2017 | SQL injection vulnerability in Intel Security Advanced Threat Defense (ATD) Linux 3.6.0 and earlier allows remote authen... |
| CVE-2017-6902 | — | — | — | Mar 14, 2017 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. ... |
| CVE-2017-6896 | — | — | 3.7% | Mar 14, 2017 | Privilege escalation vulnerability on the DIGISOL DG-HR1400 1.00.02 wireless router enables an attacker to escalate from... |
| CVE-2017-6516 | — | — | 5.3% | Mar 14, 2017 | A Local Privilege Escalation Vulnerability in MagniComp's Sysinfo before 10-H64 for Linux and UNIX platforms could allow... |
| CVE-2017-5985 | — | — | 0.3% | Mar 14, 2017 | lxc-user-nic in Linux Containers (LXC) allows local users with a lxc-usernet allocation to create network interfaces on ... |
| CVE-2017-3003 | HIGH | 8.8 | 5.3% | Mar 14, 2017 | Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable use after free vulnerability related to an intera... |
| CVE-2017-3002 | HIGH | 8.8 | 5.1% | Mar 14, 2017 | Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable use after free vulnerability in the ActionScript2... |
| CVE-2017-3001 | HIGH | 8.8 | 5.1% | Mar 14, 2017 | Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable use after free vulnerability related to garbage c... |
| CVE-2017-3000 | MEDIUM | 6.5 | 8.4% | Mar 14, 2017 | Adobe Flash Player versions 24.0.0.221 and earlier have a vulnerability in the random number generator used for constant... |
| CVE-2017-2999 | HIGH | 8.8 | 4.1% | Mar 14, 2017 | Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable memory corruption vulnerability in the Primetime ... |
| CVE-2017-2998 | HIGH | 8.8 | 4.1% | Mar 14, 2017 | Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable memory corruption vulnerability in the Primetime ... |
| CVE-2017-2997 | HIGH | 8.8 | 7.4% | Mar 14, 2017 | Adobe Flash Player versions 24.0.0.221 and earlier have an exploitable buffer overflow / underflow vulnerability in the ... |
| CVE-2017-2983 | — | — | 3.0% | Mar 14, 2017 | Adobe Shockwave versions 12.2.7.197 and earlier have an insecure library loading (DLL hijacking) vulnerability. Successf... |
| CVE-2017-6335 | — | — | 1.9% | Mar 14, 2017 | The QuantumTransferMode function in coders/tiff.c in GraphicsMagick 1.3.25 and earlier allows remote attackers to cause ... |
| CVE-2017-5957 | MEDIUM | 5.5 | 0.4% | Mar 14, 2017 | Stack-based buffer overflow in the vrend_decode_set_framebuffer_state function in vrend_decode.c in virglrenderer before... |
| CVE-2017-5668 | — | — | 3.0% | Mar 14, 2017 | bitlbee-libpurple before 3.5.1 allows remote attackers to cause a denial of service (NULL pointer dereference and crash)... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now