Vulnerability Details CVE-2017-20005
                NGINX before 1.13.6 has a buffer overflow for years that exceed four digits, as demonstrated by a file with a modification date in 1969 that causes an integer overflow (or a false modification date far in the future), when encountered by the autoindex module.
                
                    Exploit prediction scoring system (EPSS) score
                    
                        
                            EPSS Score 0.032
                        
                    
                    
                        
                            EPSS Ranking 86.6%
                        
                    
                 
                
                    CVSS Severity
                    
                        
                            CVSS v3 Score 9.8
                        
                    
                    
                        
                            CVSS v2 Score 7.5