VULNERABILITY REMEDIATIONCVE remediation guides
Move from asset identification to supported remediation and post-change verification while keeping source evidence visible.
These defensive guides do not provide exploit reproduction or bypass instructions. 01Confirm exposure first
Match the product, version, installation path, and external exposure before treating a score as an action order.
02Prefer supported fixes
Use vendor advisories and supported update paths. An unverified fixed-version field stays visibly unresolved.
03Verify and retain rollback
Confirm version state, service health, access paths, logs, and rollback readiness after the change.
18,557 guide candidatesPage 1519 of 1547
Known exploitedHighResearch in progress
CVE-2017-12231Cisco IOS software
- Affected
- Cisco IOS, >= 12.4 <= 15.6
- Fixed
- No verified fixed-version field is available yet
Known exploitedCriticalResearch in progress
CVE-2015-1187D-Link and TRENDnet Multiple Devices
- Affected
- 1.04, 1.03, 1.01, 2.02, 1.02, 1.05, 2.01, 1.00, 1.10na
- Fixed
- No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2017-12615Apache Software Foundation Apache Tomcat, tomcat, windows
- Affected
- >= 7.0.0 <= 7.0.79, 7.4, 7.6, 7.7, 2.0.0, 3.0.0, 6.0, 7.0, 7.5, 7.0 s390x, 7.4 s390x, 7.5 s390x, 7.6 s390x, 7.7 s390x, 7.0 ppc64, 7.4 ppc64, 7.5 ppc64, 7.6 ppc64, 7.7 ppc64
- Fixed
- No verified fixed-version field is available yet
Known exploitedHighFixed-version data
CVE-2017-9805Apache Struts
- Affected
- Apache Struts before 2.3.34 and 2.5.x before 2.5.13, >= 2.1.2 < 2.3.34, >= 2.5.0 < 2.5.13, 10.5(1), 11.0(1), 11.5(1), 11.6(1), 3.5, 3.5.2
- Fixed
- 2.3.34, 2.5.13
Known exploitedHighResearch in progress
CVE-2017-8759Microsoft .NET Framework
- Affected
- Microsoft .NET Framework 2.0, 3.5, 3.5.1, 4.5.2, 4.6, 4.6.1, 4.6.2 and 4.7, 2.0, 4.7, 4.6.2
- Fixed
- No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2017-6627Cisco IOS and IOS XE Software
- Affected
- Cisco IOS and Cisco IOS XE, 15.1(2)gc, 15.1(2)gc1, 15.1(2)gc2, 15.1(4)gc, 15.1(4)gc1, 15.1(4)gc2, 15.2(1)gc, 15.2(1)gc1, 15.2(1)gc2, 15.2(2)gc, 15.2(3)gc, 15.2(3)gc1, 15.2(3r)gca, 15.2(4)gc, 15.2(4)gc1, 15.2(4)gc2, 15.2(4)gc3, 15.4(1)t, 15.4(1)t1
- Fixed
- No verified fixed-version field is available yet
Review reviewHighResearch in progress
CVE-2017-13728ncurses
- Affected
- 6.0
- Fixed
- No verified fixed-version field is available yet
Known exploitedCriticalFixed-version data
CVE-2017-11357Telerik User Interface (UI) for ASP.NET AJAX
- Affected
- < 2020.1.114
- Fixed
- 2020.1.114
Known exploitedCriticalResearch in progress
CVE-2017-11317Telerik User Interface (UI) for ASP.NET AJAX
- Affected
- <= 2016.3.1027, 2017.2.503, 2017.2.621
- Fixed
- No verified fixed-version field is available yet
Known exploitedHighFixed-version data
CVE-2017-6327Symantec Symantec Messaging Gateway
- Affected
- All versions prior to 10.6.3-267, < 10.6.3-267
- Fixed
- 10.6.3-267
Known exploitedHighResearch in progress
CVE-2015-2291ethernet diagnostics driver iqvw32.sys, ethernet diagnostics driver iqvw64.sys
- Affected
- 1.03.0.7
- Fixed
- No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2017-12637SAP NetWeaver
- Affected
- 7.50
- Fixed
- No verified fixed-version field is available yet