2017 CVE Vulnerabilities
17,105 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-5628 | HIGH | 7.8 | 1.0% | Jan 30, 2017 | An issue was discovered in Artifex Software, Inc. MuJS before 8f62ea10a0af68e56d5c00720523ebcba13c2e6a. The MakeDay func... |
| CVE-2017-5627 | HIGH | 7.8 | 1.2% | Jan 30, 2017 | An issue was discovered in Artifex Software, Inc. MuJS before 4006739a28367c708dea19aeb19b8a1a9326ce08. The jsR_setprope... |
| CVE-2017-5612 | — | — | 2.9% | Jan 30, 2017 | Cross-site scripting (XSS) vulnerability in wp-admin/includes/class-wp-posts-list-table.php in the posts list table in W... |
| CVE-2017-5611 | CRITICAL | 9.8 | 9.9% | Jan 30, 2017 | SQL injection vulnerability in wp-includes/class-wp-query.php in WP_Query in WordPress before 4.7.2 allows remote attack... |
| CVE-2017-5610 | — | — | 5.1% | Jan 30, 2017 | wp-admin/includes/class-wp-press-this.php in Press This in WordPress before 4.7.2 does not properly restrict visibility ... |
| CVE-2017-5609 | — | — | 1.6% | Jan 28, 2017 | SQL injection vulnerability in include/functions_entries.inc.php in Serendipity 2.0.5 allows remote authenticated users ... |
| CVE-2017-5608 | — | — | 1.3% | Jan 28, 2017 | Cross-site scripting (XSS) vulnerability in the image upload function in Piwigo before 2.8.6 allows remote attackers to ... |
| CVE-2017-5486 | — | — | 3.3% | Jan 28, 2017 | The ISO CLNS parser in tcpdump before 4.9.0 has a buffer overflow in print-isoclns.c:clnp_print(). |
| CVE-2017-5485 | — | — | 3.1% | Jan 28, 2017 | The ISO CLNS parser in tcpdump before 4.9.0 has a buffer overflow in addrtoname.c:lookup_nsap(). |
| CVE-2017-5484 | — | — | 6.2% | Jan 28, 2017 | The ATM parser in tcpdump before 4.9.0 has a buffer overflow in print-atm.c:sig_print(). |
| CVE-2017-5483 | — | — | 3.1% | Jan 28, 2017 | The SNMP parser in tcpdump before 4.9.0 has a buffer overflow in print-snmp.c:asn1_parse(). |
| CVE-2017-5482 | — | — | 5.4% | Jan 28, 2017 | The Q.933 parser in tcpdump before 4.9.0 has a buffer overflow in print-fr.c:q933_print(), a different vulnerability tha... |
| CVE-2017-5342 | — | — | 5.4% | Jan 28, 2017 | In tcpdump before 4.9.0, a bug in multiple protocol parsers (Geneve, GRE, NSH, OTV, VXLAN and VXLAN GPE) could cause a b... |
| CVE-2017-5341 | — | — | 5.2% | Jan 28, 2017 | The OTV parser in tcpdump before 4.9.0 has a buffer overflow in print-otv.c:otv_print(). |
| CVE-2017-5205 | — | — | 3.5% | Jan 28, 2017 | The ISAKMP parser in tcpdump before 4.9.0 has a buffer overflow in print-isakmp.c:ikev2_e_print(). |
| CVE-2017-5204 | — | — | 5.8% | Jan 28, 2017 | The IPv6 parser in tcpdump before 4.9.0 has a buffer overflow in print-ip6.c:ip6_print(). |
| CVE-2017-5203 | — | — | 3.7% | Jan 28, 2017 | The BOOTP parser in tcpdump before 4.9.0 has a buffer overflow in print-bootp.c:bootp_print(). |
| CVE-2017-5202 | — | — | 3.7% | Jan 28, 2017 | The ISO CLNS parser in tcpdump before 4.9.0 has a buffer overflow in print-isoclns.c:clnp_print(). |
| CVE-2017-5601 | — | — | 4.4% | Jan 27, 2017 | An error in the lha_read_file_header_1() function (archive_read_support_format_lha.c) in libarchive 3.2.2 allows remote ... |
| CVE-2017-5329 | HIGH | 7.8 | 1.0% | Jan 27, 2017 | Palo Alto Networks Terminal Services Agent before 7.0.7 allows local users to gain privileges via vectors that trigger a... |
| CVE-2017-5328 | HIGH | 7.5 | 0.9% | Jan 27, 2017 | Palo Alto Networks Terminal Services Agent before 7.0.7 allows attackers to spoof arbitrary users via unspecified vector... |
| CVE-2017-3443 | — | — | 1.5% | Jan 27, 2017 | Vulnerability in the Oracle Common Applications component of Oracle E-Business Suite (subcomponent: User Interface). Sup... |
| CVE-2017-3442 | — | — | 1.4% | Jan 27, 2017 | Vulnerability in the Oracle Customer Interaction History component of Oracle E-Business Suite (subcomponent: User Interf... |
| CVE-2017-3441 | — | — | 1.2% | Jan 27, 2017 | Vulnerability in the Oracle Customer Interaction History component of Oracle E-Business Suite (subcomponent: User Interf... |
| CVE-2017-3440 | — | — | 1.8% | Jan 27, 2017 | Vulnerability in the Oracle Customer Interaction History component of Oracle E-Business Suite (subcomponent: User Interf... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now