VULNERABILITY REMEDIATION

CVE remediation guides

Move from asset identification to supported remediation and post-change verification while keeping source evidence visible.

These defensive guides do not provide exploit reproduction or bypass instructions.
01

Confirm exposure first

Match the product, version, installation path, and external exposure before treating a score as an action order.

02

Prefer supported fixes

Use vendor advisories and supported update paths. An unverified fixed-version field stays visibly unresolved.

03

Verify and retain rollback

Confirm version state, service health, access paths, logs, and rollback readiness after the change.

18,557 guide candidatesPage 1523 of 1547
Known exploitedHighFixed-version data
CVE-2017-8291

Artifex Ghostscript

Affected
< 9.21, 8.0, 6.0, 7.0, 7.3, 7.4, 7.5, 7.6, 7.7
Fixed
9.21
Known exploitedHighFixed-version data
CVE-2017-5030

Google Chromium V8

Affected
Google Chrome prior to 57.0.2987.98 for Linux, Windows and Mac, and 57.0.2987.108 for Android, < 57.0.2987.98, < 57.0.2987.108, 8.0, 9.0, 6.0
Fixed
57.0.2987.98, 57.0.2987.108
Known exploitedHighResearch in progress
CVE-2017-3506

Oracle WebLogic Server

Affected
10.3.6.0, 12.1.3.0, 12.2.1.0, 12.2.1.1, 12.2.1.2, 10.3.6.0.0, 12.1.3.0.0, 12.2.1.0.0, 12.2.1.1.0, 12.2.1.2.0
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalResearch in progress
CVE-2016-1555

NETGEAR Wireless Access Point (WAP) Devices

Affected
<= 3.0.5.0, <= 3.3.2
Fixed
No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2017-0210

Microsoft Internet Explorer

Affected
Internet Explorer 10 and Internet Explorer 11, 10, 11
Fixed
No verified fixed-version field is available yet
Known exploitedHighResearch in progress
CVE-2017-0199

Microsoft Office and WordPad

Affected
Office 2007 SP3, Microsoft Office 2010 SP2, Microsoft Office 2013 SP1, Microsoft Office 2016, Microsoft Windows Vista SP2, Windows Server 2008 SP2, Windows 7 SP1, and Windows 8.1, 2007, 2010, 2013, 2016, r2, 7.0, 8.0
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalFixed-version data
CVE-2016-8735

Apache Tomcat

Affected
before 6.0.48, 7.x before 7.0.73, 8.x before 8.0.39, 8.5.x before 8.5.7, 9.x before 9.0.0.M12, < 6.0.48, >= 7.0.0 < 7.0.73, >= 8.0 < 8.0.39, >= 8.5.0 < 8.5.7, 9.0.0, 16.04, 8.0, 3.0.0, 6.1.3, 6.2.0, 6.2.1.0, 9.3.5, 9.3.6, 3.7.1, 3.8.0
Fixed
6.0.48, 7.0.73, 8.0.39, 8.5.7
Known exploitedHighResearch in progress
CVE-2017-6884

emg2926 firmware, emg2926

Affected
v1.00(aaqt.4)b8
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalResearch in progress
CVE-2014-3931

Looking Glass Multi-Router Looking Glass (MRLG)

Affected
<= 5.4.1
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalResearch in progress
CVE-2017-7269

Microsoft Internet Information Services (IIS)

Affected
6.0
Fixed
No verified fixed-version field is available yet
Review reviewHighResearch in progress
CVE-2016-6650

EMC RecoverPoint versions prior to 5.0 and EMC RecoverPoint for Virtual Machines versions prior to 5.0, recoverpoint for virtual machines, recoverpoint

Affected
EMC RecoverPoint versions prior to 5.0 and EMC RecoverPoint for Virtual Machines versions prior to 5.0, <= 4.4.1.1
Fixed
No verified fixed-version field is available yet
Known exploitedCriticalResearch in progress
CVE-2017-3881

Cisco IOS and IOS XE

Affected
Cisco IOS and IOS XE Software, >= 12.2s <= 15.1\(3\)svs, >= 3.2sg <= 3.9e
Fixed
No verified fixed-version field is available yet