CVE-2017-17933

cgi/surgeftpmgr.cgi (aka the Web Manager interface on TCP port 7021 or 9021) in NetWin SurgeFTP version 23f2 has XSS via the classid, domainid, or username parameter.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:netwin:surgeftp:23f2:*:*:*:*:*:*:*

Information

Published : 2017-12-29 10:29

Updated : 2021-09-09 19:44


NVD link : CVE-2017-17933

Mitre link : CVE-2017-17933


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

netwin

  • surgeftp