KEV 2017
86 CISA Known Exploited Vulnerabilities from 2017
Critical 23
March 2026
October 2025
February 2025
August 2023
March 2023
January 2023
August 2022
June 2022
May 2022
Kaseya VSA / ConnectWise ManagedITSync — Unauthenticated SQL Injection Gives Full Database Access to MSP Management Platform; CRITICAL 9.8; EOL — Disconnect
CVSS 9.8Microsoft Windows Search — Windows Search Service Memory Corruption Enables Unauthenticated Remote Code Execution via SMB Message; CRITICAL 9.8; Patched June 2017
CVSS 9.8April 2022
March 2022
Cisco IOS and IOS XE — CIA Vault 7 Revealed CMP Telnet Buffer Overflow Enables Unauthenticated Root RCE on Cisco Switches and Routers; CRITICAL 9.8
CVSS 9.8Citrix NetScaler SD-WAN / CloudBridge / XenMobile — Unauthenticated RCE via Management Interface Command Injection; CRITICAL 9.8; Patched July 2017
CVSS 9.8NETGEAR DGN2200 Wireless Router — Unauthenticated OS Command Injection via Ping Diagnostics Page Enables Root RCE; CRITICAL 9.8; Added KEV March 2022
CVSS 9.8Cisco IOS/IOS XE — DHCP Relay Subsystem Heap Overflow Enables Unauthenticated RCE; CRITICAL 9.8; Most Severe in September 2017 Cisco Advisory Bundle
CVSS 9.8February 2022
PHPUnit — eval-stdin.php Executes Arbitrary PHP from HTTP POST Body When Vendor Directory Is Web-Accessible; CRITICAL 9.8; Fixed in PHPUnit 4.8.28 / 5.6.3
CVSS 9.8Apache Struts 1 Plugin (Struts 2) — OGNL Expression Injection via ActionMessage Raw Value Enables Unauthenticated RCE; S2-048; CRITICAL 9.8; Patched July 2017
CVSS 9.8January 2022
Intel AMT / ME — Digest Authentication strncmp Bypass via Empty Hash Enables Unauthenticated Remote KVM Console Access; CRITICAL 9.8; Patched May 2017
CVSS 9.8PrimeFaces JSF Component Library — Hardcoded Blowfish Key in ViewState Encryption Enables Server-Side EL Injection RCE; CRITICAL 9.8; Added KEV January 2022
CVSS 9.8December 2021
November 2021
Apache Struts — Jakarta Multipart Parser Evaluates Malicious Content-Type Header as OGNL Expression; Equifax Breach; CRITICAL 9.8; Patched March 2017
CVSS 9.8Microsoft IIS 6.0 WebDAV — ScStoragePathFromUrl Buffer Overflow via Crafted PROPFIND If: Header; No Official Patch (Windows Server 2003 EOL); CRITICAL 9.8
CVSS 9.8Progress Telerik UI for ASP.NET AJAX — Encryption Key Disclosure via WebResource.axd Dialog Handler Enables File Upload Bypass, XSS, and ViewState Forgery; CRITICAL 9.8; Patched 2017
CVSS 9.8High 57
March 2025
September 2024
June 2024
September 2023
April 2023
September 2022
June 2022
Google Chrome V8 Engine — Out-of-Bounds Read Memory Corruption in Turbofan JIT Compiler Enables Renderer RCE via Crafted HTML; HIGH 8.8; Fixed Chrome 57
CVSS 8.8Google Chrome V8 Engine — Type Confusion in JIT Compiler Enables Renderer RCE via Crafted HTML Page; HIGH 8.8; Fixed Chrome 59
CVSS 8.8May 2022
Microsoft Internet Explorer — OOB Write in Layout Engine Enables Drive-By RCE; Exploit Kit Adoption; Patched MS17-006 (March 2017)
CVSS 8.8Microsoft Internet Explorer — Cross-Domain Policy Bypass Enables Zone Escalation; Chained with IE RCE Exploits; Patched April 2017
CVSS 8.8Microsoft Windows GDI — Zero-Day GDI Kernel LPE Attributed to APT3 Enables SYSTEM Privilege; Patched MS17-013 (March 2017)
CVSS 7.8Artifex Ghostscript — -dSAFER Sandbox Bypass via .rsdparams Type Confusion Enables Remote Code Execution via Crafted PostScript/EPS/PDF; HIGH 7.8
CVSS 7.8Microsoft Windows SMBv1 — EternalRomance Memory Disclosure Leaks Server Memory for ASLR Bypass; Shadow Brokers Leak; Patched MS17-010 (March 2017)
CVSS 7.5April 2022
March 2022
Microsoft Windows SMBv1 — EternalSynergy: NSA Equation Group SMBv1 RCE; Shadow Brokers Leak; WannaCry/NotPetya Propagation; Patched MS17-010 (March 2017)
CVSS 8.8NETGEAR DGN2200 — Authenticated OS Command Injection via dnslookup.cgi Enables Root RCE; EOL — Disconnect; HIGH 8.8
CVSS 8.8Adobe Flash Player — Type Confusion Exploited as Zero-Day by Black Oasis APT (FinSpy); APSB17-32 Emergency Patch October 2017; Flash EOL December 2020
CVSS 8.8Cisco IOS and IOS XE — SNMP Subsystem Buffer Overflow via Crafted SNMP Packets Enables Authenticated RCE; Part of cisco-sa-20170629-snmp; HIGH 8.8
CVSS 8.8Cisco IOS and IOS XE — SNMP Subsystem Buffer Overflow (Variant 2) Enables Authenticated RCE or Device Reload; Part of cisco-sa-20170629-snmp; HIGH 8.8
CVSS 8.8Cisco IOS and IOS XE — SNMP Subsystem Buffer Overflow (Variant 3) Enables Authenticated RCE or Device Reload; Part of cisco-sa-20170629-snmp; HIGH 8.8
CVSS 8.8Cisco IOS and IOS XE — SNMP Subsystem Buffer Overflow (Variant 4) Enables Authenticated RCE or Device Reload; Part of cisco-sa-20170629-snmp; HIGH 8.8
CVSS 8.8Cisco IOS and IOS XE — SNMP Subsystem Buffer Overflow (Variant 5) Enables Authenticated RCE or Device Reload; Part of cisco-sa-20170629-snmp; HIGH 8.8
CVSS 8.8Cisco IOS and IOS XE — SNMP Subsystem Buffer Overflow (Variant 7) Enables Authenticated RCE; Part of cisco-sa-20170629-snmp; HIGH 8.8
CVSS 8.8Cisco IOS — SNMP Subsystem Buffer Overflow (Variant 8) Enables Authenticated RCE or Device Reload; Part of cisco-sa-20170629-snmp; HIGH 8.8
CVSS 8.8Microsoft Edge / Internet Explorer — mshtml.dll Type Confusion Enables Remote Code Execution via Malicious Web Page; Patched MS17-007 (March 2017)
CVSS 8.1Apache Tomcat — HTTP PUT with Trailing Slash Uploads JSP Web Shell on Windows; Ransomware Delivery; Patched September 2017; Companion CVE-2017-12617 (All Platforms)
CVSS 8.1Apache Tomcat — HTTP PUT JSP Upload RCE on All Platforms via Partial PUT Bypass; Companion to CVE-2017-12615 (Windows); Patched October 2017
CVSS 8.1Microsoft Windows TxF — Transaction Manager Kernel Memory Corruption Enables SYSTEM Privilege Escalation; Used in Ransomware Chains; Patched MS17-017 (March 2017)
CVSS 7.8Microsoft Windows GDI — Kernel Use-After-Free Enables Local Privilege Escalation to SYSTEM; Patched MS17-013 (March 2017)
CVSS 7.8Microsoft Office — EPS Filter UAF Zero-Day Exploited by APT28/Turla Before May 2017 Patch; Chained with Win32k LPE CVE-2017-0263 for Sandbox Escape
CVSS 7.8Microsoft Office — OOXML Document Object Memory Corruption Exploited in Targeted Attacks; Patched October 2017 Patch Tuesday
CVSS 7.8Microsoft Malware Protection Engine (MsMpEng) — Scanning Malicious File Triggers OOB Write Memory Corruption and SYSTEM RCE; HIGH 7.8; Patched May 2017
CVSS 7.8Cisco IOS — NAT Implementation Flaw Enables Unauthenticated Remote DoS; Part of September 2017 Cisco Advisory Bundle; Nation-State Network Infrastructure Targeting
CVSS 7.5Cisco IOS — CIP Implementation Flaw Causes Unauthenticated Remote DoS; ICS/OT Network Risk; September 2017 Advisory Bundle
CVSS 7.5Cisco IOS — Second CIP DoS Vulnerability; Unauthenticated Remote Device Reload; September 2017 Advisory Bundle; ICS/OT Network Exposure
CVSS 7.5Cisco IOS Industrial Ethernet Switches — PROFINET PN-DCP Flaw Enables Unauthenticated Remote DoS; ICS/OT Manufacturing Risk; September 2017 Advisory Bundle
CVSS 7.5Cisco IOS/IOS XE — IKEv2 Flaw Enables Unauthenticated Remote DoS via CPU Exhaustion or Reload; VPN Infrastructure Targeting; September 2017 Advisory Bundle
CVSS 7.5Cisco IOS and IOS XE — UDP Processing Input Queue Wedge Causes Interface Denial-of-Service; HIGH 7.5; Patched September 2017
CVSS 7.5Microsoft Windows — COM Aggregate Marshaler Registry Hijack Enables LPE to SYSTEM; Ransomware Post-Exploitation; Patched May 2017
CVSS 7.3February 2022
Microsoft Internet Explorer — OOB Write in Trident Layout Engine Enables Drive-By RCE; Exploit Kit Adoption; Patched May 2017
CVSS 8.8Microsoft SMBv1 'EternalBlue' — NSA-Developed SMBv1 Buffer Overflow Used in WannaCry and NotPetya
CVSS 8.8Microsoft Windows SMBv1 — EternalChampion: NSA Equation Group SMBv1 RCE; Shadow Brokers Leak; WannaCry/NotPetya Ransomware; Patched MS17-010 (March 2017)
CVSS 8.8Microsoft Windows — Shell LNK File Icon Processing Executes Attacker-Controlled DLL via Network Share or Removable Media; HIGH 8.8; Patched June 2017
CVSS 8.8Microsoft Office — Composite Moniker OLE Object Processing Bypass Executes Script via Crafted Document; Successor to CVE-2017-0199; HIGH 7.8; Patched July 2017
CVSS 7.8Microsoft Office — EPS Filter UAF Zero-Day Exploited by APT28 Before May 2017 Patch; Companion to CVE-2017-0261 (Turla); EPS Permanently Disabled Post-Patch
CVSS 7.8Microsoft Win32k — UAF Kernel LPE Used by APT28 and Turla as Stage-2 Sandbox Escape Paired with Office EPS Zero-Days CVE-2017-0261/0262; Patched May 2017
CVSS 7.8Oracle WebLogic Server — XMLDecoder Deserialization via WLS-WSAT Component Enables Unauthenticated RCE; Cryptominer and Ransomware Mass Exploitation; Patched October 2017 CPU
CVSS 7.5December 2021
November 2021
Microsoft Windows SMBv1 — EternalRomance: NSA Equation Group SMBv1 RCE Exposed by Shadow Brokers; WannaCry and NotPetya Ransomware Propagation; Patched MS17-010
CVSS 8.8Symantec Symantec Messaging Gateway — Symantec Messaging Gateway Remote Code Execution Vulnerability
CVSS 8.8DotNetNuke (DNN) CMS — DNNPersonalization Cookie .NET BinaryFormatter Deserialization Enables Authenticated RCE; Ransomware Used; HIGH 8.8; Patched July 2017
CVSS 8.8Apache Struts REST Plugin — XStream XML Deserialization Without Type Filtering Enables Unauthenticated RCE via Crafted XML Request; S2-052; HIGH 8.1; Patched September 2017
CVSS 8.1Microsoft Office/WordPad — RTF OLE2 HTA Zero-Day: Moniker Download-and-Execute Before April 2017 Patch; Used by Carbanak, APT32, Dridex; Ransomware Delivery
CVSS 7.8Microsoft Outlook — Home Page Feature Enables RCE via Malicious URL; APT33 Persistence Mechanism; Patched October 2017 Patch Tuesday
CVSS 7.8Microsoft Office — 17-Year-Old Equation Editor (EQNEDT32.EXE) Stack Overflow; No ASLR/DEP; Massively Exploited for RAT/Ransomware Delivery Globally; Patched November 2017
CVSS 7.8Roundcube Webmail — Insufficient Attachment Plugin Input Validation Enables Authenticated Arbitrary File Read on Webmail Server; HIGH 7.8; Fixed November 2017
CVSS 7.8Microsoft .NET Framework — WSDL Code Injection via Crafted SOAP Response Enables RCE When Processing Malicious Document; HIGH 7.8; Patched September 2017
CVSS 7.8Medium 6
May 2022
March 2022
Cisco IOS on ISR G2 — Adjacent-Network Protocol Flaw Causes Device Reload; September 2017 Advisory Bundle; Nation-State Network Infrastructure Targeting
CVSS 6.5Cisco Catalyst 6800 — VPLS Code Flaw Enables Adjacent-Network DoS; Data Center/Campus Core Switch Disruption; September 2017 Advisory Bundle
CVSS 6.5Cisco IOS and IOS XE — Autonomic Networking Feature Adjacent Network Crash via Crafted Packets; MEDIUM 6.5; Patched August 2017
CVSS 6.5Cisco IOS XE — EVPN BGP Input Validation Flaw Enables DoS or BGP Table Corruption; Service Provider and Data Center Fabric Risk; Added KEV March 2022
CVSS 5.9Microsoft Internet Explorer — Process Memory Disclosure via Crafted Web Page; Enables ASLR Bypass in Exploit Chains; Patched MS17-007 (March 2017)
CVSS 4.3