Medium severity5.4NVD Advisory· Published Dec 27, 2017· Updated May 13, 2026
CVE-2017-17832
CVE-2017-17832
Description
ServersCheck Monitoring Software before 14.2.3 is prone to a cross-site scripting vulnerability as user supplied-data is not validated/sanitized when passed in the settings_SMS_ALERT_TYPE parameter, and JavaScript can be executed on settings-save.html (the Settings - SMS Alerts page).
Affected products
1- cpe:2.3:a:serverscheck:monitoring_software:*:*:*:*:*:*:*:*Range: <14.2.3
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- serverscheck.com/monitoring-software/release.aspnvdPatchRelease NotesVendor Advisory
- packetstormsecurity.com/files/145517/ServersCheck-Monitoring-Software-Cross-Site-Scripting.htmlnvdExploitPatchThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.