Server Side Request Forgery vulnerability in Vebto Pixie Image Editor 1.4 and 1.7 allows remote attackers to disclose information or execute arbitrary code via the url parameter to Launderer.php.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
http://seclists.org/fulldisclosure/2017/Sep/47 |
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2017-09-25T17:00:00
Updated: 2024-08-05T18:51:07.330Z
Reserved: 2017-08-17T00:00:00
Link: CVE-2017-12905
Vulnrichment
No data.
NVD
Status : Modified
Published: 2017-09-25T17:29:00.727
Modified: 2024-11-21T03:10:24.730
Link: CVE-2017-12905
Redhat
No data.