Critical severity9.8OSV Advisory· Published Dec 17, 2017· Updated Jun 17, 2026
CVE-2017-17717
CVE-2017-17717
Description
Sonatype Nexus Repository Manager through 2.14.5 has weak password encryption with a hardcoded CMMDwoV value in the LDAP integration feature.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:sonatype:nexus_repository_manager:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:sonatype:nexus_repository_manager:*:*:*:*:*:*:*:*range: <=2.14.5
- (no CPE)range: <=2.14.5
Patches
Vulnerability mechanics
References
1- openwall.com/lists/oss-security/2017/12/17/3nvdIssue TrackingMailing ListRelease Notes
News mentions
0No linked articles in our index yet.