Vulnerability Database

328,409

Total vulnerabilities in the database

CVE-2017-17157

IKEv2 in Huawei IPS Module V500R001C00, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC500, V500R001C00SPH303, V500R001C00SPH508, V500R001C20, V500R001C20SPC100, V500R001C20SPC100PWE, V500R001C20SPC200, V500R001C20SPC200B062, V500R001C20SPC200PWE, V500R001C20SPC300B078, V500R001C20SPC300PWE, NGFW Module V500R001C00, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC500, V500R001C00SPC500PWE, V500R001C00SPH303, V500R001C00SPH508, V500R001C20, V500R001C20SPC100, V500R001C20SPC100PWE, V500R001C20SPC200, V500R001C20SPC200B062, V500R001C20SPC200PWE, V500R001C20SPC300B078, V500R001C20SPC300PWE, NIP6300 V500R001C00, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC500, V500R001C00SPH303, V500R001C00SPH508, V500R001C20, V500R001C20SPC100, V500R001C20SPC100PWE, V500R001C20SPC200, V500R001C20SPC200B062, V500R001C20SPC200PWE, V500R001C20SPC300B078, V500R001C20SPC300PWE, NIP6600 V500R001C00, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC500, V500R001C00SPH303, V500R001C00SPH508, V500R001C20, V500R001C20SPC100, V500R001C20SPC100PWE, V500R001C20SPC200, V500R001C20SPC200B062, V500R001C20SPC200PWE, V500R001C20SPC300B078, Secospace USG6300 V500R001C00, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC500, V500R001C00SPC500PWE, V500R001C00SPH303, V500R001C00SPH508, V500R001C20, V500R001C20SPC100, V500R001C20SPC100PWE, V500R001C20SPC101, V500R001C20SPC200, V500R001C20SPC200B062, V500R001C20SPC200PWE, V500R001C20SPC300B078, V500R001C20SPC300PWE, Secospace USG6500 V500R001C00, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC500, V500R001C00SPC500PWE, V500R001C00SPH303, V500R001C00SPH508, V500R001C20, V500R001C20SPC100, V500R001C20SPC100PWE, V500R001C20SPC101, V500R001C20SPC200, V500R001C20SPC200B062, V500R001C20SPC200PWE, V500R001C20SPC300B078, V500R001C20SPC300PWE, Secospace USG6600 V500R001C00, V500R001C00SPC100, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC301, V500R001C00SPC500, V500R001C00SPC500PWE, V500R001C00SPH303, V500R001C20, V500R001C20SPC100, V500R001C20SPC100PWE, V500R001C20SPC101, V500R001C20SPC200, V500R001C20SPC200PWE, V500R001C20SPC300, V500R001C20SPC300B078, V500R001C20SPC300PWE, USG9500 V500R001C00, V500R001C00SPC200, V500R001C00SPC300, V500R001C00SPC303, V500R001C00SPC500, V500R001C00SPC500PWE, V500R001C00SPH303, V500R001C00SPH508, V500R001C20, V500R001C20SPC100, V500R001C20SPC100PWE, V500R001C20SPC101, V500R001C20SPC200, V500R001C20SPC200B062, V500R001C20SPC200PWE, V500R001C20SPC300B078, V500R001C20SPC300PWE has an out-of-bounds memory access vulnerability due to insufficient input validation. An attacker could exploit it to craft special packets to trigger out-of-bounds memory access, which may further lead to system exceptions.

  • Published: Feb 15, 2018
  • Updated: Nov 9, 2025
  • CVE: CVE-2017-17157
  • Severity: Medium
  • Exploit:

CVSS v2:

  • Severity: Medium
  • Score: 5
  • AV:N/AC:L/Au:N/C:N/I:N/A:P

CWEs:

Software From Fixed in
huawei / ips_module_firmware 500r001c00 500r001c00.x
huawei / ips_module_firmware 500r001c00spc200 500r001c00spc200.x
huawei / ips_module_firmware 500r001c00spc300 500r001c00spc300.x
huawei / ips_module_firmware 500r001c00spc500 500r001c00spc500.x
huawei / ips_module_firmware 500r001c00sph303 500r001c00sph303.x
huawei / ips_module_firmware 500r001c00sph508 500r001c00sph508.x
huawei / ips_module_firmware 500r001c20 500r001c20.x
huawei / ips_module_firmware 500r001c20spc100 500r001c20spc100.x
huawei / ips_module_firmware 500r001c20spc100pwe 500r001c20spc100pwe.x
huawei / ips_module_firmware 500r001c20spc200 500r001c20spc200.x
huawei / ips_module_firmware 500r001c20spc200b062 500r001c20spc200b062.x
huawei / ips_module_firmware 500r001c20spc200pwe 500r001c20spc200pwe.x
huawei / ips_module_firmware 500r001c20spc300b078 500r001c20spc300b078.x
huawei / ips_module_firmware 500r001c20spc300pwe 500r001c20spc300pwe.x
huawei / ngfw_module_firmware 500r001c00 500r001c00.x
huawei / ngfw_module_firmware 500r001c00spc200 500r001c00spc200.x
huawei / ngfw_module_firmware 500r001c00spc300 500r001c00spc300.x
huawei / ngfw_module_firmware 500r001c00spc500 500r001c00spc500.x
huawei / ngfw_module_firmware 500r001c00spc500pwe 500r001c00spc500pwe.x
huawei / ngfw_module_firmware 500r001c00sph303 500r001c00sph303.x
huawei / ngfw_module_firmware 500r001c00sph508 500r001c00sph508.x
huawei / ngfw_module_firmware 500r001c20 500r001c20.x
huawei / ngfw_module_firmware 500r001c20spc100 500r001c20spc100.x
huawei / ngfw_module_firmware 500r001c20spc100pwe 500r001c20spc100pwe.x
huawei / ngfw_module_firmware 500r001c20spc200 500r001c20spc200.x
huawei / ngfw_module_firmware 500r001c20spc200b062 500r001c20spc200b062.x
huawei / ngfw_module_firmware 500r001c20spc200pwe 500r001c20spc200pwe.x
huawei / ngfw_module_firmware 500r001c20spc300b078 500r001c20spc300b078.x
huawei / ngfw_module_firmware 500r001c20spc300pwe 500r001c20spc300pwe.x
huawei / nip6300_firmware 500r001c00 500r001c00.x
huawei / nip6300_firmware 500r001c00spc200 500r001c00spc200.x
huawei / nip6300_firmware 500r001c00spc300 500r001c00spc300.x
huawei / nip6300_firmware 500r001c00spc500 500r001c00spc500.x
huawei / nip6300_firmware 500r001c00sph303 500r001c00sph303.x
huawei / nip6300_firmware 500r001c00sph508 500r001c00sph508.x
huawei / nip6300_firmware 500r001c20 500r001c20.x
huawei / nip6300_firmware 500r001c20spc100 500r001c20spc100.x
huawei / nip6300_firmware 500r001c20spc100pwe 500r001c20spc100pwe.x
huawei / nip6300_firmware 500r001c20spc200 500r001c20spc200.x
huawei / nip6300_firmware 500r001c20spc200b062 500r001c20spc200b062.x
huawei / nip6300_firmware 500r001c20spc200pwe 500r001c20spc200pwe.x
huawei / nip6300_firmware 500r001c20spc300b078 500r001c20spc300b078.x
huawei / nip6300_firmware 500r001c20spc300pwe 500r001c20spc300pwe.x
huawei / nip6600_firmware 500r001c00 500r001c00.x
huawei / nip6600_firmware 500r001c00spc200 500r001c00spc200.x
huawei / nip6600_firmware 500r001c00spc300 500r001c00spc300.x
huawei / nip6600_firmware 500r001c00spc500 500r001c00spc500.x
huawei / nip6600_firmware 500r001c00sph303 500r001c00sph303.x
huawei / nip6600_firmware 500r001c00sph508 500r001c00sph508.x
huawei / nip6600_firmware 500r001c20 500r001c20.x
huawei / nip6600_firmware 500r001c20spc100 500r001c20spc100.x
huawei / nip6600_firmware 500r001c20spc100pwe 500r001c20spc100pwe.x
huawei / nip6600_firmware 500r001c20spc200 500r001c20spc200.x
huawei / nip6600_firmware 500r001c20spc200b062 500r001c20spc200b062.x
huawei / nip6600_firmware 500r001c20spc200pwe 500r001c20spc200pwe.x
huawei / nip6600_firmware 500r001c20spc300b078 500r001c20spc300b078.x
huawei / secospace_usg6300_firmware 500r001c00 500r001c00.x
huawei / secospace_usg6300_firmware 500r001c00spc200 500r001c00spc200.x
huawei / secospace_usg6300_firmware 500r001c00spc300 500r001c00spc300.x
huawei / secospace_usg6300_firmware 500r001c00spc500 500r001c00spc500.x
huawei / secospace_usg6300_firmware 500r001c00spc500pwe 500r001c00spc500pwe.x
huawei / secospace_usg6300_firmware 500r001c00sph303 500r001c00sph303.x
huawei / secospace_usg6300_firmware 500r001c00sph508 500r001c00sph508.x
huawei / secospace_usg6300_firmware 500r001c20 500r001c20.x
huawei / secospace_usg6300_firmware 500r001c20spc100 500r001c20spc100.x
huawei / secospace_usg6300_firmware 500r001c20spc100pwe 500r001c20spc100pwe.x
huawei / secospace_usg6300_firmware 500r001c20spc101 500r001c20spc101.x
huawei / secospace_usg6300_firmware 500r001c20spc200 500r001c20spc200.x
huawei / secospace_usg6300_firmware 500r001c20spc200b062 500r001c20spc200b062.x
huawei / secospace_usg6300_firmware 500r001c20spc200pwe 500r001c20spc200pwe.x
huawei / secospace_usg6300_firmware 500r001c20spc300b078 500r001c20spc300b078.x
huawei / secospace_usg6300_firmware 500r001c20spc300pwe 500r001c20spc300pwe.x
huawei / secospace_usg6500_firmware 500r001c00 500r001c00.x
huawei / secospace_usg6500_firmware 500r001c00spc200 500r001c00spc200.x
huawei / secospace_usg6500_firmware 500r001c00spc300 500r001c00spc300.x
huawei / secospace_usg6500_firmware 500r001c00spc500 500r001c00spc500.x
huawei / secospace_usg6500_firmware 500r001c00spc500pwe 500r001c00spc500pwe.x
huawei / secospace_usg6500_firmware 500r001c00sph303 500r001c00sph303.x
huawei / secospace_usg6500_firmware 500r001c00sph508 500r001c00sph508.x
huawei / secospace_usg6500_firmware 500r001c20 500r001c20.x
huawei / secospace_usg6500_firmware 500r001c20spc100 500r001c20spc100.x
huawei / secospace_usg6500_firmware 500r001c20spc100pwe 500r001c20spc100pwe.x
huawei / secospace_usg6500_firmware 500r001c20spc101 500r001c20spc101.x
huawei / secospace_usg6500_firmware 500r001c20spc200 500r001c20spc200.x
huawei / secospace_usg6500_firmware 500r001c20spc200b062 500r001c20spc200b062.x
huawei / secospace_usg6500_firmware 500r001c20spc200pwe 500r001c20spc200pwe.x
huawei / secospace_usg6500_firmware 500r001c20spc300b078 500r001c20spc300b078.x
huawei / secospace_usg6500_firmware 500r001c20spc300pwe 500r001c20spc300pwe.x
huawei / secospace_usg6600_firmware 500r001c00 500r001c00.x
huawei / secospace_usg6600_firmware 500r001c00spc100 500r001c00spc100.x
huawei / secospace_usg6600_firmware 500r001c00spc200 500r001c00spc200.x
huawei / secospace_usg6600_firmware 500r001c00spc300 500r001c00spc300.x
huawei / secospace_usg6600_firmware 500r001c00spc301 500r001c00spc301.x
huawei / secospace_usg6600_firmware 500r001c00spc500 500r001c00spc500.x
huawei / secospace_usg6600_firmware 500r001c00spc500pwe 500r001c00spc500pwe.x
huawei / secospace_usg6600_firmware 500r001c00sph303 500r001c00sph303.x
huawei / secospace_usg6600_firmware 500r001c20 500r001c20.x
huawei / secospace_usg6600_firmware 500r001c20spc100 500r001c20spc100.x
huawei / secospace_usg6600_firmware 500r001c20spc100pwe 500r001c20spc100pwe.x
huawei / secospace_usg6600_firmware 500r001c20spc101 500r001c20spc101.x
huawei / secospace_usg6600_firmware 500r001c20spc200 500r001c20spc200.x
huawei / secospace_usg6600_firmware 500r001c20spc200pwe 500r001c20spc200pwe.x
huawei / secospace_usg6600_firmware 500r001c20spc300 500r001c20spc300.x
huawei / secospace_usg6600_firmware 500r001c20spc300b078 500r001c20spc300b078.x
huawei / secospace_usg6600_firmware 500r001c20spc300pwe 500r001c20spc300pwe.x
huawei / usg9500_firmware 500r001c00 500r001c00.x
huawei / usg9500_firmware 500r001c00spc200 500r001c00spc200.x
huawei / usg9500_firmware 500r001c00spc300 500r001c00spc300.x
huawei / usg9500_firmware 500r001c00spc303 500r001c00spc303.x
huawei / usg9500_firmware 500r001c00spc500 500r001c00spc500.x
huawei / usg9500_firmware 500r001c00spc500pwe 500r001c00spc500pwe.x
huawei / usg9500_firmware 500r001c00sph303 500r001c00sph303.x
huawei / usg9500_firmware 500r001c00sph508 500r001c00sph508.x
huawei / usg9500_firmware 500r001c20 500r001c20.x
huawei / usg9500_firmware 500r001c20spc100 500r001c20spc100.x
huawei / usg9500_firmware 500r001c20spc100pwe 500r001c20spc100pwe.x
huawei / usg9500_firmware 500r001c20spc101 500r001c20spc101.x
huawei / usg9500_firmware 500r001c20spc200 500r001c20spc200.x
huawei / usg9500_firmware 500r001c20spc200b062 500r001c20spc200b062.x
huawei / usg9500_firmware 500r001c20spc200pwe 500r001c20spc200pwe.x
huawei / usg9500_firmware 500r001c20spc300b078 500r001c20spc300b078.x
huawei / usg9500_firmware 500r001c20spc300pwe 500r001c20spc300pwe.x

Frequently Asked Questions

A security vulnerability is a weakness in software, hardware, or configuration that can be exploited to compromise confidentiality, integrity, or availability. Many vulnerabilities are tracked as CVEs (Common Vulnerabilities and Exposures), which provide a standardized identifier so teams can coordinate patching, mitigation, and risk assessment across tools and vendors.

CVSS (Common Vulnerability Scoring System) estimates technical severity, but it doesn't automatically equal business risk. Prioritize using context like internet exposure, affected asset criticality, known exploitation (proof-of-concept or in-the-wild), and whether compensating controls exist. A "Medium" CVSS on an exposed, production system can be more urgent than a "Critical" on an isolated, non-production host.

A vulnerability is the underlying weakness. An exploit is the method or code used to take advantage of it. A zero-day is a vulnerability that is unknown to the vendor or has no publicly available fix when attackers begin using it. In practice, risk increases sharply when exploitation becomes reliable or widespread.

Recurring findings usually come from incomplete Asset Discovery, inconsistent patch management, inherited images, and configuration drift. In modern environments, you also need to watch the software supply chain: dependencies, containers, build pipelines, and third-party services can reintroduce the same weakness even after you patch a single host. Unknown or unmanaged assets (often called Shadow IT) are a common reason the same issues resurface.

Use a simple, repeatable triage model: focus first on externally exposed assets, high-value systems (identity, VPN, email, production), vulnerabilities with known exploits, and issues that enable remote code execution or privilege escalation. Then enforce patch SLAs and track progress using consistent metrics so remediation is steady, not reactive.

SynScan combines attack surface monitoring and continuous security auditing to keep your inventory current, flag high-impact vulnerabilities early, and help you turn raw findings into a practical remediation plan.