Critical severity9.0NVD Advisory· Published Dec 7, 2017· Updated May 13, 2026
CVE-2017-17055
CVE-2017-17055
Description
Artica Web Proxy before 3.06.112911 allows remote attackers to execute arbitrary code as root by conducting a cross-site scripting (XSS) attack involving the username-form-id parameter to freeradius.users.php.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- hyp3rlinx.altervista.org/advisories/ARTICA-WEB-PROXY-v3.06-REMOTE-CODE-EXECUTION-CVE-2017-17055.txtnvdExploitVendor Advisory
- packetstormsecurity.com/files/145183/Artica-Web-Proxy-3.06.112216-Remote-Code-Execution.htmlnvdExploitThird Party AdvisoryVDB Entry
- seclists.org/fulldisclosure/2017/Dec/3nvdExploitMailing ListThird Party Advisory
- www.exploit-db.com/exploits/43206/nvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.