Lucene search

K
cvelistMitreCVELIST:CVE-2017-9993
HistoryJun 28, 2017 - 6:00 a.m.

CVE-2017-9993

2017-06-2806:00:00
mitre
www.cve.org
2

6.8 Medium

AI Score

Confidence

High

0.005 Low

EPSS

Percentile

75.7%

FFmpeg before 2.8.12, 3.0.x and 3.1.x before 3.1.9, 3.2.x before 3.2.6, and 3.3.x before 3.3.2 does not properly restrict HTTP Live Streaming filename extensions and demuxer names, which allows attackers to read arbitrary files via crafted playlist data.

6.8 Medium

AI Score

Confidence

High

0.005 Low

EPSS

Percentile

75.7%