Security Advisory

CVE-2017-5617

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-03-16 15:00:00
Last updated 2024-08-05 15:04:15
Assigner mitre
State PUBLISHED

Description

The SVG Salamander (aka svgSalamander) library, when used in a web application, allows remote attackers to conduct server-side request forgery (SSRF) attacks via an xlink:href attribute in an SVG file.