CVE-2017-17933
29.12.2017, 18:29
cgi/surgeftpmgr.cgi (aka the Web Manager interface on TCP port 7021 or 9021) in NetWin SurgeFTP version 23f2 has XSS via the classid, domainid, or username parameter.
Awaiting analysis
This vulnerability is currently awaiting analysis.