2017 Advisories Archive

Severity Date Published Date Updated Check Point Reference Source Industry Reference Description
High 2 Oct 2017 2 Oct 2017 CPAI-2017-0818 CVE-2017-12616
Apache Tomcat VirtualDirContext Information Disclosure (CVE-2017-12616)
Critical 23 Aug 2017 1 Oct 2017 CPAI-2017-0706 CVE-2017-10951
Foxit Reader PDF Command Injection Remote Code Execution (CVE-2017-10951)
Critical 23 Aug 2017 1 Oct 2017 CPAI-2017-0707 CVE-2017-10952
Foxit Reader PDF Arbitrary File Write Remote Code Execution (CVE-2017-10952)
Medium 18 Sep 2017 1 Oct 2017 CPAI-2017-0773 Apache s2-051 CVE-2017-9793
Apache Struts 2 REST Plugin XStream Denial of Service (CVE-2017-9793)
Medium 10 Aug 2017 28 Sep 2017 CPAI-2017-0680 PHP 74435 CVE-2017-7890
PHP gdImageCreateFromGifCtx Out of Bounds Read (CVE-2017-7890)
Medium 6 Sep 2017 28 Sep 2017 CPAI-2017-0740 OpenSSL CVE-2017-3735
OpenSSL X.509 IPAddressFamily Extension Parsing Out-of-Bounds Read (CVE-2017-3735)
High 28 Sep 2017 28 Sep 2017 CPAI-2017-0806 Microsoft Internet Explorer Address Bar Information Disclosure
Critical 28 Sep 2017 28 Sep 2017 CPAI-2017-0805 WordPress Visual Editor Cross Site Scripting
Critical 8 Feb 2017 27 Sep 2017 CPAI-2017-0109 Flash File Malicious Code Execution
Medium 7 Aug 2017 27 Sep 2017 CPAI-2017-0672 Microsoft CVE-2017-0170
Microsoft Windows Performance Monitor XXE Injection Information Disclosure (CVE-2017-0170)
Medium 19 Sep 2017 27 Sep 2017 CPAI-2017-0772 STRONG SWAN CVE-2017-11185
strongSwan gmp Plugin Denial of Service (CVE-2017-11185)
Medium 25 Sep 2017 27 Sep 2017 CPAI-2017-0787 Elastic ESA-2015-08 CVE-2015-5531
Elastic Elasticsearch Snapshot API Directory Traversal (CVE-2015-5531)
Critical 4 Jul 2017 26 Sep 2017 CPAI-2017-0550 Rapid7 Exploit-db CVE-2015-2843
CVE-2015-2844
CVE-2015-2845
GoAutoDial 3.3 Authentication Bypass Command Injection (CVE-2015-2843; CVE-2015-2844; CVE-2015-2845)
Medium 14 Mar 2017 24 Sep 2017 CPAI-2017-0087 Microsoft MS17-006 CVE-2017-0033
Microsoft Browser Spoofing (MS17-006: CVE-2017-0033)
High 25 Jul 2017 24 Sep 2017 CPAI-2017-0586 Rapid7 CVE-2017-0372
MediaWiki SyntaxHighlight Option Injection (CVE-2017-0372)
Critical 8 Aug 2017 24 Sep 2017 CPAI-2017-0664 Adobe APSB17-24 CVE-2017-11257
Adobe Acrobat and Reader Type Confusion (APSB17-24: CVE-2017-11257)
High 28 Aug 2017 24 Sep 2017 CPAI-2017-0710 Microsoft CVE-2017-8656 CVE-2017-8656
Microsoft Edge Scripting Engine Memory Corruption (CVE-2017-8656)
Medium 29 Aug 2017 24 Sep 2017 CPAI-2017-0724 CVE-2015-0802
CVE-2015-0816
Firefox PDF.js Javascript Injection (CVE-2015-0802; CVE-2015-0816)
High 19 Sep 2017 24 Sep 2017 CPAI-2017-0777 HPE CVE-2017-8994
HPE Operations Orchestration central-remoting Insecure Deserialization (CVE-2017-8994)
Critical 17 Sep 2017 19 Sep 2017 CPAI-2017-0775 Repetitive IMAP Login Failures
Medium 18 Sep 2017 19 Sep 2017 CPAI-2017-0769 ExploitDB ExploitDB CVE-2017-14147
Multiple Routers Unauthenticated Router Factory Reset (CVE-2017-14147)
Critical 14 Sep 2017 18 Sep 2017 CPAI-2017-0759 EMC ESA-2017-062 CVE-2017-4997
EMC VMAX3 VASA Provider UploadConfigurator Directory Traversal (CVE-2017-4997)
Critical 12 Jan 2017 17 Sep 2017 CPAI-2017-0025 Adobe APSB17-02 CVE-2017-2927
Adobe Flash Player Heap Buffer Overflow (APSB17-02: CVE-2017-2927)
High 29 Aug 2017 17 Sep 2017 CPAI-2017-0722 PostgreSQL Global Development Group CVE-2017-7546
PostgreSQL Database Core Server non-libpq Client Policy Bypass (CVE-2017-7546)
Medium 17 Sep 2017 17 Sep 2017 CPAI-2017-0763 Rapid7 ExploitDB Rapid7 EDB-ID: 42560 Disk Pulse Enterprise GET Buffer Overflow
Medium 23 Jul 2017 14 Sep 2017 CPAI-2017-0579 Metasploit CVE-2017-9757
IPFire ids.cgi OINKCODE Parameter Command Injection (CVE-2017-9757)
Critical 8 Aug 2017 14 Sep 2017 CPAI-2017-0625 Adobe APSB17-24 CVE-2017-11223
Adobe Acrobat And Reader Use After Free (APSB17-24: CVE-2017-11223)
Critical 20 Aug 2017 14 Sep 2017 CPAI-2017-0702 Microsoft CVE-2017-8620
Microsoft Windows Search Type Confusion (CVE-2017-8620)
High 13 Sep 2017 14 Sep 2017 CPAI-2017-0755 TrendMicro 1117722 CVE-2017-11383
Trend Micro Control Manager cmdHandlerTVCSCommander SQL Injection (CVE-2017-11383)
Critical 8 Aug 2017 13 Sep 2017 CPAI-2017-0610 Adobe APSB17-24 CVE-2017-11220
Adobe Acrobat and Reader Heap Overflow (APSB17-24: CVE-2017-11220)
Medium 5 Jul 2017 12 Sep 2017 CPAI-2017-0553 GnuTLS CVE-2017-7507
GnuTLS status_request Extension Null Pointer Dereference (CVE-2017-7507)
High 5 Sep 2017 12 Sep 2017 CPAI-2017-0730 Trend Micro CVE-2017-11385
Trend Micro Control Manager cmdHandlerStatusMonitor SQL Injection (CVE-2017-11385)
Critical 12 Sep 2017 12 Sep 2017 CPAI-2017-0746 Microsoft CVE-2017-8682 CVE-2017-8682
Microsoft Win32k Graphics Remote Code Execution (CVE-2017-8682)
Critical 12 Sep 2017 12 Sep 2017 CPAI-2017-0744 Microsoft CVE-2017-8731 CVE-2017-8731
Microsoft Edge Memory Corruption (CVE-2017-8731)
Critical 12 Sep 2017 12 Sep 2017 CPAI-2017-0733 Microsoft CVE-2017-8737 CVE-2017-8737
Microsoft Windows PDF Library Remote Code Execution (CVE-2017-8737)
Critical 12 Sep 2017 12 Sep 2017 CPAI-2017-0738 Microsoft CVE-2017-8747 CVE-2017-8747
Microsoft Internet Explorer Memory Corruption (CVE-2017-8747)
Critical 12 Sep 2017 12 Sep 2017 CPAI-2017-0735 Microsoft CVE-2017-8757 CVE-2017-8757
Microsoft Edge Remote Code Execution (CVE-2017-8757)
Critical 12 Sep 2017 12 Sep 2017 CPAI-2017-0743 Microsoft CVE-2017-8750 CVE-2017-8750
Microsoft Browser Memory Corruption (CVE-2017-8750)
Critical 12 Sep 2017 12 Sep 2017 CPAI-2017-0739 Microsoft CVE-2017-8753 CVE-2017-8753
Microsoft Edge Scripting Engine Memory Corruption (CVE-2017-8753)
Critical 12 Sep 2017 12 Sep 2017 CPAI-2017-0736 Microsoft CVE-2017-8749 CVE-2017-8749
Microsoft Internet Explorer Memory Corruption (CVE-2017-8749)
Critical 12 Sep 2017 12 Sep 2017 CPAI-2017-0734 Microsoft CVE-2017-8738 CVE-2017-8738
Microsoft Edge Scripting Engine Memory Corruption (CVE-2017-8738)
High 12 Sep 2017 12 Sep 2017 CPAI-2017-0748 Adobe APSB17-28 CVE-2017-11282
Adobe Flash Player Memory Corruption (APSB17-28: CVE-2017-11282)
High 12 Sep 2017 12 Sep 2017 CPAI-2017-0749 Adobe APSB17-28 CVE-2017-11281
Adobe Flash Player Memory Corruption (APSB17-28: CVE-2017-11281)
Medium 26 Jun 2017 11 Sep 2017 CPAI-2017-0528 Trend Micro Trend Micro SafeSync for Enterprise license Command Injection
Critical 8 Aug 2017 11 Sep 2017 CPAI-2017-0609 Adobe APSB17-24 CVE-2017-11222
Adobe Acrobat and Reader Memory Corruption (APSB17-24: CVE-2017-11222)
Medium 11 Sep 2017 11 Sep 2017 CPAI-2017-0591 CVE-2017-0190
Microsoft Windows GDI Information Disclosure (CVE-2017-0190)
Critical 8 Sep 2017 8 Sep 2017 CPAI-2017-0747 CVE-2017-12611
Apache Struts2 Freemarker Remote Code Execution (CVE-2017-12611)
High 9 Aug 2017 6 Sep 2017 CPAI-2017-0677 Suspicious Credential Harvesting
High 28 Aug 2017 6 Sep 2017 CPAI-2017-0712 Microsoft CVE-2017-8636 CVE-2017-8636
Microsoft Browser Scripting Engine Memory Corruption (CVE-2017-8636)
Medium 3 Sep 2017 6 Sep 2017 CPAI-2017-0728 Symantec CVE-2017-6327
Symantec Messaging Gateway performRestore Command Injection (CVE-2017-6327)
×
  Feedback
This website uses cookies for its functionality and for analytics and marketing purposes. By continuing to use this website, you agree to the use of cookies. For more information, please read our Cookies Notice.
OK