CVE-2017-18268
Status: ModifiedMedium (5.9)—
Symantec IntelligenceCenter 3.3 is vulnerable to the Return of the Bleichenbacher Oracle Threat (ROBOT) attack. A remote attacker, who has captured a pre-recorded SSL session inspected by SSLV, can establish large numbers of crafted SSL connections to the target and obtain the session keys required to decrypt the pre-recorded SSL session.
CVSS
- Version: 3.1
- Vector: CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
- Base score: 5.9
Exploitation probability (EPSS)
- Probability of exploitation in the next 30 days: 1.62%
- Percentile among all scored CVEs: 75
- Score date: 10/7/2026
EPSS (Exploit Prediction Scoring System, FIRST) estimates how likely a vulnerability is to be exploited in the wild within 30 days. It complements CVSS (impact) and CISA KEV (confirmed exploitation).
Affected technologies (1)
CWEs
- CWE-203
References
Raw JSON (NVD)
Show
{
"id": "CVE-2017-18268",
"cveTags": [],
"metrics": {
"cvssMetricV2": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"version": "2.0",
"baseScore": 4.3,
"accessVector": "NETWORK",
"vectorString": "AV:N/AC:M/Au:N/C:P/I:N/A:N",
"authentication": "NONE",
"integrityImpact": "NONE",
"accessComplexity": "MEDIUM",
"availabilityImpact": "NONE",
"confidentialityImpact": "PARTIAL"
},
"acInsufInfo": false,
"impactScore": 2.9,
"baseSeverity": "MEDIUM",
"obtainAllPrivilege": false,
"exploitabilityScore": 8.6,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": false,
"userInteractionRequired": false
}
],
"cvssMetricV31": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"cvssData": {
"scope": "UNCHANGED",
"version": "3.1",
"baseScore": 5.9,
"attackVector": "NETWORK",
"baseSeverity": "MEDIUM",
"vectorString": "CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N",
"integrityImpact": "NONE",
"userInteraction": "NONE",
"attackComplexity": "HIGH",
"availabilityImpact": "NONE",
"privilegesRequired": "NONE",
"confidentialityImpact": "HIGH"
},
"impactScore": 3.6,
"exploitabilityScore": 2.2
}
]
},
"affected": [
{
"source": "secure@symantec.com",
"affectedData": [
{
"vendor": "Symantec Corporation",
"product": "IntelligenceCenter",
"versions": [
{
"status": "affected",
"version": "3.3"
}
]
}
]
}
],
"published": "2018-05-17T13:29:00.257",
"references": [
{
"url": "http://www.securityfocus.com/bid/104164",
"tags": [
"Third Party Advisory",
"VDB Entry"
],
"source": "secure@symantec.com"
},
{
"url": "https://www.symantec.com/security-center/network-protection-security-advisories/SA160",
"tags": [
"Vendor Advisory"
],
"source": "secure@symantec.com"
},
{
"url": "http://www.securityfocus.com/bid/104164",
"tags": [
"Third Party Advisory",
"VDB Entry"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "https://www.symantec.com/security-center/network-protection-security-advisories/SA160",
"tags": [
"Vendor Advisory"
],
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
],
"vulnStatus": "Modified",
"weaknesses": [
{
"type": "Primary",
"source": "nvd@nist.gov",
"description": [
{
"lang": "en",
"value": "CWE-203"
}
]
}
],
"descriptions": [
{
"lang": "en",
"value": "Symantec IntelligenceCenter 3.3 is vulnerable to the Return of the Bleichenbacher Oracle Threat (ROBOT) attack. A remote attacker, who has captured a pre-recorded SSL session inspected by SSLV, can establish large numbers of crafted SSL connections to the target and obtain the session keys required to decrypt the pre-recorded SSL session."
},
{
"lang": "es",
"value": "Symantec IntelligenceCenter 3.3 es vulnerable a un ataque ROBOT (Return of the Bleichenbacher Oracle Threat). Un atacante remoto que haya capturado una sesión SSL previamente grabada inspeccionada por SSLV puede establecer un gran número de conexiones SSL manipuladas en el objetivo y obtener las claves de sesión necesarias para descifrar la sesión SSL pregrabada."
}
],
"lastModified": "2026-06-17T01:12:30.943",
"configurations": [
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:broadcom:symantec_intelligencecenter:3.3:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "EC2EBF00-ACDE-4A98-BDB8-6017105975AC"
}
],
"operator": "OR"
}
]
}
],
"sourceIdentifier": "secure@symantec.com"
}