Skip to main content

Daily materialized evidence profile

Year 2017

This factual profile is rebuilt from stored cvebuzz evidence each day. It is a timestamped snapshot, not an immutable publication.

Refreshed UTC

Stored evidence summary

Sample size
14,642
CVEs with mentions
975
Total mentions
2,443
CVEs with KEV
89
CVEs with PoC
4

Attack vector counts

Network
10,109
Adjacent network
210
Local
4,181
Physical
142

Top snapshot Buzz entries

Up to five denormalized entries captured by the same daily profile refresh.

CVE-2017-12615

Published Sep 19, 2017

When running Apache Tomcat 7.0.0 to 7.0.79 on Windows with HTTP PUTs enabled (e.g. via setting the readonly initialisation parameter of the Default to false) it was possible to up…

CVSS 8.1 · High
evidence mentions
28
Buzz score
84.5
KEV listedPublic PoC observed

CVE-2017-0199

Published Apr 12, 2017

Microsoft Office 2007 SP3, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, Microsoft Office 2016, Microsoft Windows Vista SP2, Windows Server 2008 SP2, Windows 7 SP1, Window…

CVSS 7.8 · High
evidence mentions
105
Buzz score
75.0
KEV listed

CVE-2017-5638

Published Mar 11, 2017

The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception handling and error-message generation during file-upload atte…

CVSS 9.8 · Critical
evidence mentions
76
Buzz score
75.0
KEV listed

CVE-2017-0144

Published Mar 17, 2017

The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Go…

CVSS 8.8 · High
evidence mentions
44
Buzz score
75.0
KEV listed

CVE-2017-0143

Published Mar 17, 2017

The SMBv1 server in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Go…

CVSS 8.8 · High
evidence mentions
19
Buzz score
75.0
KEV listed