CVE-2017-8759
ENISA EUVD: EUVD-2017-17705 ↗
Exploited in the Wild
✓ Confirmed 0-Day
★ Google Project Zero
Triaged: March 5, 2026
4 articles
EPSS Score
Source: FIRST.org · 2026-05-24
93.97%
probability
This CVE has a 93.97% probability
of being exploited in the next 30 days.
0%
Top 99.9th percentile of all CVEs
100%
CVSS v3.1
Source: NVD7.8
Attack Vector
Local
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Description
Project ZeroCode injection in SOAP WSDL parser
Affected Products
Attack Intelligence
Google Project Zero
Patched
Sept. 12, 2017
Reported by
Genwei Jiang and Dhanesh Kizhakkinan of FireEye, Inc.
Root Cause Analysis
???
Exploits & PoC
bhdresh/CVE-2017-8759
Exploit toolkit CVE-2017-8759 - v1.0 is a handy python script which provides pentesters and security researchers a quick and effective way to test Mic
312
Voulnet/CVE-2017-8759-Exploit-sample
Running CVE-2017-8759 exploit sample.
256
BasuCert/CVE-2017-8759
CVE-2017-8759 Research
1
3 repos — triés par ⭐
Rechercher sur GitHub ↗
Microsoft September Patch Tuesday Fixes 82 Security Issues, Including a Zero-Day
BleepingComputer
Sep 12, 2017
Adobe Patches Flash Zero-Day Used by BlackOasis APT
BleepingComputer
Oct 16, 2017
Signal Intelligence
Confidence
95%
EPSS
93.97%
CVSS v3.1
7.8
Mentions
4
Last Seen
Oct 16, 2017
CNA Information
Analyst Note
Auto-imported from Google Project Zero — confirmed zero-day by definition.
Threat Actors 4
Stone Panda
apt_group
Information theft and espionage
🇨🇳 CN
DNSpionage
apt_group
Information theft and espionage
🇮🇷 IR
Kinsing
apt_group
🇷🇺 RU
TeamTNT
apt_group
🇩🇪 DE
Triage Info
Decided atMar 05, 2026