Known Exploited Vulnerabilities (KEV)

ID Title Severity CVSS EPSS Source Updated
cve-2018-0158 Cisco IOS and XE Software Internet Key Exchange Memory Leak Vulnerability HIGH N/A 7.19% cvelistv5 2022-03-03
cve-2018-0156 Cisco IOS Software and Cisco IOS XE Software Smart Install Denial-of-Service Vulnerability HIGH N/A 8.60% cvelistv5 2022-03-03
cve-2018-0155 Cisco Catalyst Bidirectional Forwarding Detection Denial-of-Service Vulnerability HIGH N/A 7.74% cvelistv5 2022-03-03
cve-2018-0154 Cisco IOS Software Integrated Services Module for VPN Denial-of-Service Vulnerability HIGH N/A 7.07% cvelistv5 2022-03-03
cve-2018-0151 Cisco IOS Software and Cisco IOS XE Software Quality of Service Remote Code Execution Vulnerability HIGH N/A 14.20% cvelistv5 2022-03-03
cve-2018-0147 Cisco Secure Access Control System Java Deserialization Vulnerability CRITICAL 9.8 18.21% cvelistv5 2022-03-25
cve-2018-0127 CVE-2018-0127 HIGH N/A 77.48% cvelistv5
cve-2018-0125 Cisco VPN Routers Remote Code Execution Vulnerability CRITICAL 9.8 55.19% cvelistv5 2022-03-25
cve-2017-9844 SAP NetWeaver 7400.12.21.30308 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted serialized Java object in a request to metadatauploader, aka SAP Security Note 2399804. NOTE: The vendor states that the devserver package of Visual Composer deserializes a malicious object that may cause legitimate users accessing a service, either by crashing or flooding the service. HIGH 7.5 5.37% cvelistv5 2026-06-17
cve-2017-9841 PHPUnit Command Injection Vulnerability HIGH N/A 100.00% cvelistv5 2022-02-15
cve-2017-9833 CVE-2017-9833 HIGH N/A 68.46% cvelistv5
cve-2017-9822 DotNetNuke (DNN) Remote Code Execution Vulnerability HIGH 8.8 94.79% cvelistv5 2021-11-03
cve-2017-9805 Apache Struts Deserialization of Untrusted Data Vulnerability HIGH N/A 99.40% cvelistv5 2021-11-03
cve-2017-9791 Apache Struts 1 Improper Input Validation Vulnerability HIGH N/A 98.91% cvelistv5 2022-02-10
cve-2017-9506 The IconUriServlet of the Atlassian OAuth Plugin from version 1.3.0 before version 1.9.12 and from version 2.0.0 before version 2.0.4 allows remote attackers to access the content of internal network resources and/or perform an XSS attack via Server Side Request Forgery (SSRF). MEDIUM 6.1 71.60% cvelistv5 2026-06-17
cve-2017-9248 Progress Telerik UI for ASP.NET AJAX and Sitefinity Cryptographic Weakness Vulnerability CRITICAL 9.8 75.10% cvelistv5 2021-11-03
cve-2017-8961 A directory traversal vulnerability in HPE Intelligent Management Center (IMC) PLAT 7.3 E0504P02 could allow remote code execution. HIGH 8.8 19.06% cvelistv5 2026-06-17
cve-2017-8759 Microsoft .NET Framework Remote Code Execution Vulnerability HIGH 7.8 88.70% cvelistv5 2021-11-03
cve-2017-8570 Microsoft Office Remote Code Execution Vulnerability HIGH 7.8 89.89% cvelistv5 2022-02-25
cve-2017-8543 Microsoft Windows Search Remote Code Execution Vulnerability HIGH N/A 74.16% cvelistv5 2022-05-24
cve-2017-8540 Microsoft Malware Protection Engine Improper Restriction of Operations Vulnerability HIGH N/A 71.87% cvelistv5 2022-03-03
cve-2017-8464 Microsoft Windows Shell (.lnk) Remote Code Execution Vulnerability HIGH N/A 89.92% cvelistv5 2022-02-10
cve-2017-8291 Artifex Ghostscript Type Confusion Vulnerability HIGH N/A 96.97% cvelistv5 2022-05-24
cve-2017-8226 Amcrest IPM-721S V2.420.AC00.16.R.20160909 devices have default credentials that are hardcoded in the firmware and can be extracted by anyone who reverses the firmware to identify them. If the firmware version V2.420.AC00.16.R 9/9/2016 is dissected using binwalk tool, one obtains a _user-x.squashfs.img.extracted archive which contains the filesystem set up on the device that many of the binaries in the /usr folder. The binary "sonia" is the one that has the vulnerable function that sets up the default credentials on the device. If one opens this binary in IDA-pro, one will notice that this follows a ARM little endian format. The function sub_3DB2FC in IDA pro is identified to be setting up the values at address 0x003DB5A6. The sub_5C057C then sets this value and adds it to the Configuration files in /mnt/mtd/Config/Account1 file. CRITICAL 9.8 3.80% cvelistv5 2026-06-17
cve-2017-8046 SUSE CVE CVE-2017-8046 UNKNOWN N/A 74.53% cvelistv5 2025-02-18
cve-2017-7927 A Use of Password Hash Instead of Password for Authentication issue was discovered in Dahua DH-IPC-HDBW23A0RN-ZS, DH-IPC-HDBW13A0SN, DH-IPC-HDW1XXX, DH-IPC-HDW2XXX, DH-IPC-HDW4XXX, DH-IPC-HFW1XXX, DH-IPC-HFW2XXX, DH-IPC-HFW4XXX, DH-SD6CXX, DH-NVR1XXX, DH-HCVR4XXX, DH-HCVR5XXX, DHI-HCVR51A04HE-S3, DHI-HCVR51A08HE-S3, and DHI-HCVR58A32S-S2 devices. The use of password hash instead of password for authentication vulnerability was identified, which could allow a malicious user to bypass authentication without obtaining the actual password. HIGH 7.3 36.75% cvelistv5 2026-06-17
cve-2017-7921 Hikvision Multiple Products Improper Authentication Vulnerability CRITICAL 9.8 100.00% cvelistv5 2026-03-05
cve-2017-7494 Samba Remote Code Execution Vulnerability CRITICAL N/A 99.45% cvelistv5 2023-03-30
cve-2017-7269 Microsoft Windows Server Buffer Overflow Vulnerability CRITICAL 9.8 99.82% cvelistv5 2021-11-03
cve-2017-6884 Zyxel EMG2926 Routers Command Injection Vulnerability CRITICAL N/A 34.37% cvelistv5 2023-09-18