Known Exploited Vulnerabilities (KEV)

ID Title Severity CVSS EPSS Source Updated
cve-2017-6862 NETGEAR Multiple Devices Buffer Overflow Vulnerability HIGH N/A 45.75% cvelistv5 2022-06-08
cve-2017-6744 Cisco IOS Software SNMP Remote Code Execution Vulnerability HIGH N/A 7.29% cvelistv5 2022-03-03
cve-2017-6743 Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability HIGH N/A 10.85% cvelistv5 2022-03-03
cve-2017-6742 Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability HIGH 8.8 21.42% cvelistv5 2023-04-19
cve-2017-6740 Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability HIGH N/A 11.10% cvelistv5 2022-03-03
cve-2017-6739 Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability HIGH N/A 10.85% cvelistv5 2022-03-03
cve-2017-6738 Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability HIGH N/A 10.85% cvelistv5 2022-03-03
cve-2017-6737 Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability HIGH N/A 45.24% cvelistv5 2022-03-03
cve-2017-6736 Cisco IOS and IOS XE Software SNMP Remote Code Execution Vulnerability HIGH N/A 70.35% cvelistv5 2022-03-03
cve-2017-6663 Cisco IOS Software and Cisco IOS XE Software Denial-of-Service Vulnerability HIGH N/A 2.12% cvelistv5 2022-03-03
cve-2017-6627 Cisco IOS Software and Cisco IOS XE Software UDP Packet Processing Denial-of-Service Vulnerability HIGH N/A 6.16% cvelistv5 2022-03-03
cve-2017-6334 NETGEAR DGN2200 Devices OS Command Injection Vulnerability HIGH N/A 72.64% cvelistv5 2022-03-25
cve-2017-6327 Symantec Messaging Gateway Remote Code Execution Vulnerability HIGH N/A 35.91% cvelistv5 2021-11-03
cve-2017-6316 Citrix Multiple Products Remote Code Execution Vulnerability HIGH N/A 73.03% cvelistv5 2022-03-25
cve-2017-6090 Unrestricted file upload vulnerability in clients/editclient.php in PhpCollab 2.5.1 and earlier allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in logos_clients/. HIGH 8.8 96.23% cvelistv5 2026-06-17
cve-2017-6077 NETGEAR DGN2200 Remote Code Execution Vulnerability HIGH N/A 68.71% cvelistv5 2022-03-07
cve-2017-5689 Intel Active Management Technology (AMT), Small Business Technology (SBT), and Standard Manageability Privilege Escalation Vulnerability HIGH N/A 92.19% cvelistv5 2022-01-28
cve-2017-5638 Apache Struts Remote Code Execution Vulnerability CRITICAL N/A 100.00% cvelistv5 2021-11-03
cve-2017-5521 NETGEAR Multiple Devices Exposure of Sensitive Information Vulnerability HIGH N/A 89.24% cvelistv5 2022-09-08
cve-2017-5173 CVE-2017-5173 HIGH N/A 29.58% cvelistv5
cve-2017-5070 Google Chromium V8 Type Confusion Vulnerability HIGH N/A 32.07% cvelistv5 2022-06-08
cve-2017-5030 Google Chromium V8 Memory Corruption Vulnerability HIGH N/A 40.63% cvelistv5 2022-06-08
cve-2017-3881 Cisco IOS and IOS XE Remote Code Execution Vulnerability HIGH N/A 98.95% cvelistv5 2022-03-25
cve-2017-3506 Oracle WebLogic Server OS Command Injection Vulnerability HIGH 7.4 96.28% cvelistv5 2024-06-03
cve-2017-3066 Adobe ColdFusion Deserialization Vulnerability CRITICAL 9.8 90.60% cvelistv5 2025-02-24
cve-2017-20149 The Mikrotik RouterOS web server allows memory corruption in releases before Stable 6.38.5 and Long-term 6.37.5, aka Chimay-Red. A remote and unauthenticated user can trigger the vulnerability by sending a crafted HTTP request. An attacker can use this vulnerability to execute arbitrary code on the affected system, as exploited in the wild in mid-2017 and later. CRITICAL 9.8 2.00% cvelistv5 2026-06-17
cve-2017-18378 CVE-2017-18378 HIGH 8.4 8.17% cvelistv5
cve-2017-18368 Zyxel P660HN-T1A Routers Command Injection Vulnerability CRITICAL 9.8 94.42% cvelistv5 2023-08-07
cve-2017-18362 Kaseya VSA SQL Injection Vulnerability CRITICAL 9.8 86.82% cvelistv5 2022-05-24
cve-2017-18349 parseObject in Fastjson before 1.2.25, as used in FastjsonEngine in Pippo 1.11.0 and other products, allows remote attackers to execute arbitrary code via a crafted JSON request, as demonstrated by a crafted rmi:// URI in the dataSourceName field of HTTP POST data to the Pippo /json URI, which is mishandled in AjaxApplication.java. CRITICAL 9.8 39.24% cvelistv5 2026-06-17