2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-0337 | — | — | 1.7% | Mar 8, 2017 | An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute a... |
| CVE-2017-0336 | — | — | 0.9% | Mar 8, 2017 | An information disclosure vulnerability in the NVIDIA GPU driver could enable a local malicious application to access da... |
| CVE-2017-0335 | — | — | 1.7% | Mar 8, 2017 | An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute a... |
| CVE-2017-0334 | — | — | 0.9% | Mar 8, 2017 | An information disclosure vulnerability in the NVIDIA GPU driver could enable a local malicious application to access da... |
| CVE-2017-0333 | — | — | 1.7% | Mar 8, 2017 | An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute a... |
| CVE-2017-0307 | — | — | 1.8% | Mar 8, 2017 | An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute a... |
| CVE-2017-0306 | — | — | 1.7% | Mar 8, 2017 | An elevation of privilege vulnerability in the NVIDIA GPU driver could enable a local malicious application to execute a... |
| CVE-2017-6518 | — | — | 0.8% | Mar 8, 2017 | Cross-site scripting (XSS) vulnerability in /sanadata/seo/index.asp in SANADATA SanaCMS 7.3 allows remote attackers to i... |
| CVE-2017-2636 | HIGH | 7 | 1.0% | Mar 7, 2017 | Race condition in drivers/tty/n_hdlc.c in the Linux kernel through 4.10.1 allows local users to gain privileges or cause... |
| CVE-2017-6511 | MEDIUM | 6.1 | 0.7% | Mar 7, 2017 | andrzuk/FineCMS before 2017-03-06 is vulnerable to a reflected XSS in index.php because of missing validation of the act... |
| CVE-2017-5681 | — | — | 1.4% | Mar 7, 2017 | The RSA-CRT implementation in the Intel QuickAssist Technology (QAT) Engine for OpenSSL versions prior to 0.5.19 may all... |
| CVE-2017-1133 | — | — | 0.5% | Mar 7, 2017 | IBM QRadar 7.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code... |
| CVE-2017-1124 | — | — | 0.3% | Mar 7, 2017 | IBM Maximo Asset Management 7.1, 7.5, and 7.6 could allow a local attacker to obtain sensitive information using HTTP He... |
| CVE-2017-6509 | — | — | 0.7% | Mar 7, 2017 | Smith0r/burgundy-cms before 2017-03-06 is vulnerable to a reflected XSS in admin/components/menu/views/menuitems.php (id... |
| CVE-2017-3159 | — | — | 6.3% | Mar 7, 2017 | Apache Camel's camel-snakeyaml component is vulnerable to Java object de-serialization vulnerability. De-serializing unt... |
| CVE-2017-6508 | — | — | 3.1% | Mar 7, 2017 | CRLF injection vulnerability in the url_parse function in url.c in Wget through 1.19.1 allows remote attackers to inject... |
| CVE-2017-6411 | — | — | 3.0% | Mar 6, 2017 | Cross Site Request Forgery (CSRF) on D-Link DSL-2730U C1 IN_1.00 devices allows remote attackers to change the DNS or fi... |
| CVE-2017-5999 | — | — | 1.1% | Mar 6, 2017 | An issue was discovered in sysPass 2.x before 2.1, in which an algorithm was never sufficiently reviewed by cryptographe... |
| CVE-2017-5633 | — | — | 4.0% | Mar 6, 2017 | Multiple cross-site request forgery (CSRF) vulnerabilities on the D-Link DI-524 Wireless Router with firmware 9.01 allow... |
| CVE-2017-5197 | — | — | 0.8% | Mar 6, 2017 | There is XSS in SilverStripe CMS before 3.4.4 and 3.5.x before 3.5.2. The attack vector is a page name. An example paylo... |
| CVE-2017-6504 | — | — | 0.7% | Mar 6, 2017 | WebUI in qBittorrent before 3.3.11 did not set the X-Frame-Options header, which could potentially lead to clickjacking. |
| CVE-2017-6503 | — | — | 0.9% | Mar 6, 2017 | WebUI in qBittorrent before 3.3.11 did not escape many values, which could potentially lead to XSS. |
| CVE-2017-6502 | — | — | 0.9% | Mar 6, 2017 | An issue was discovered in ImageMagick 6.9.7. A specially crafted webp file could lead to a file-descriptor leak in libm... |
| CVE-2017-6501 | — | — | 1.1% | Mar 6, 2017 | An issue was discovered in ImageMagick 6.9.7. A specially crafted xcf file could lead to a NULL pointer dereference. |
| CVE-2017-6500 | — | — | 1.3% | Mar 6, 2017 | An issue was discovered in ImageMagick 6.9.7. A specially crafted sun file triggers a heap-based buffer over-read. |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now