CVE Database
/

CVE-2017-5617

Back to search

CVE-2017-5617

Published: Mar 16, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

The SVG Salamander (aka svgSalamander) library, when used in a web application, allows remote attackers to conduct server-side request forgery (SSRF) attacks via an xlink:href attribute in an SVG file.

VendorProductVersions

n/a

n/a

affected
n/a

References

95871
vdb-entry
x_refsource_BID
DSA-3781
vendor-advisory
x_refsource_DEBIAN
FEDORA-2019-3cbce64a64
vendor-advisory
x_refsource_FEDORA
FEDORA-2019-735d3953e8
vendor-advisory
x_refsource_FEDORA
GLSA-202003-11
vendor-advisory
x_refsource_GENTOO

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now