Critical severity9.8OSV Advisory· Published Nov 17, 2017· Updated Jun 17, 2026
CVE-2017-1000237
CVE-2017-1000237
Description
I, Librarian version <=4.6 & 4.7 is vulnerable to Server-Side Request Forgery in the ajaxsupplement.php resulting in the attacker being able to reset any user's password.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: 3.0, 3.1, 3.2, …
- Range: <=4.7
Patches
Vulnerability mechanics
References
1- www.sec-consult.com/fxdata/seccons/prod/temedia/advisories_txt/20170509-0_I_Librarian_Multiple_vulnerabilities_v10.txtnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.