Common Open Policy Service Protocol (COPS) module in Huawei USG6300 V100R001C10; V100R001C20; V100R001C30; V500R001C00; V500R001C20; V500R001C30; V500R001C50; Secospace USG6500 V100R001C10; V100R001C20; V100R001C30; V500R001C00; V500R001C20; V500R001C30; V500R001C50; Secospace USG6600 V100R001C00; V100R001C20; V100R001C30; V500R001C00; V500R001C20; V500R001C30; V500R001C50; TE30 V100R001C02; V100R001C10; V500R002C00; V600R006C00; TE40 V500R002C00; V600R006C00; TE50 V500R002C00; V600R006C00; TE60 V100R001C01; V100R001C10; V500R002C00; V600R006C00 has a buffer overflow vulnerability. An unauthenticated, remote attacker has to control the peer device and send specially crafted message to the affected products. Due to insufficient input validation, successful exploit may cause some services abnormal.
Conclusion & alert: CVE-2017-17317 is rated Low Risk (35.7/100): CVSS Low severity, with medium exploitation likelihood (EPSS 0.98%). Mandatory action: Monitor for updates and reassess as exploit intelligence or EPSS changes.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 0.15% | 0.98% | +0.82% |
| 2 | 2025-03-30 | 0.26% | 0.15% | -0.11% |
| 3 | 2025-03-29 | — | 0.26% | — |
Full EPSS history (8 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 3.7 | 3.0 | LOW |
|
2.2 | 1.4 | [email protected] |
| 4.3 | 2.0 | MEDIUM |
|
8.6 | 2.9 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| huawei | dp300_firmware | v500r002c00 | cpe:2.3:o:huawei:dp300_firmware:v500r002c00:*:*:*:*:*:*:* |
| huawei | rp200_firmware | v500r002c00 | cpe:2.3:o:huawei:rp200_firmware:v500r002c00:*:*:*:*:*:*:* |
| huawei | rp200_firmware | v600r006c00 | cpe:2.3:o:huawei:rp200_firmware:v600r006c00:*:*:*:*:*:*:* |
| huawei | te30_firmware | v100r001c02 | cpe:2.3:o:huawei:te30_firmware:v100r001c02:*:*:*:*:*:*:* |
| huawei | te30_firmware | v100r001c10 | cpe:2.3:o:huawei:te30_firmware:v100r001c10:*:*:*:*:*:*:* |
| huawei | te30_firmware | v500r002c00 | cpe:2.3:o:huawei:te30_firmware:v500r002c00:*:*:*:*:*:*:* |
| huawei | te30_firmware | v600r006c00 | cpe:2.3:o:huawei:te30_firmware:v600r006c00:*:*:*:*:*:*:* |
| huawei | te40_firmware | v500r002c00 | cpe:2.3:o:huawei:te40_firmware:v500r002c00:*:*:*:*:*:*:* |
| huawei | te40_firmware | v600r006c00 | cpe:2.3:o:huawei:te40_firmware:v600r006c00:*:*:*:*:*:*:* |
| huawei | te50_firmware | v500r002c00 | cpe:2.3:o:huawei:te50_firmware:v500r002c00:*:*:*:*:*:*:* |
| huawei | te50_firmware | v600r006c00 | cpe:2.3:o:huawei:te50_firmware:v600r006c00:*:*:*:*:*:*:* |
| huawei | te60_firmware | v100r001c01 | cpe:2.3:o:huawei:te60_firmware:v100r001c01:*:*:*:*:*:*:* |
| huawei | te60_firmware | v100r001c10 | cpe:2.3:o:huawei:te60_firmware:v100r001c10:*:*:*:*:*:*:* |
| huawei | te60_firmware | v500r002c00 | cpe:2.3:o:huawei:te60_firmware:v500r002c00:*:*:*:*:*:*:* |
| huawei | te60_firmware | v600r006c00 | cpe:2.3:o:huawei:te60_firmware:v600r006c00:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20180630-01-cops-en | Vendor Advisory |