CVE-2017-17968: XI-Soft Nettransport Download Manager

Critical severity, CVSS 9.8. EPSS: 39.4% chance of exploitation in the next 30 days.

A buffer overflow vulnerability in NetTransport.exe in NetTransport Download Manager 2.96L and earlier could allow remote HTTP servers to execute arbitrary code on NAS devices via a long HTTP response.

Affected products

  • XI-Soft Nettransport Download Manager: up to and including 2.96l

Published 2017-12-29. Last modified 2026-06-17.