CVE-2017-8917
84Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actepss 100%
from disclosure to weapon2 days
Published on NVDMay 17
1st PoC+2d
metasploitMay 17
VulnCheck+3404d
exploitation probability
100%top 1% of all CVEs
observed exploitation
yesVulnCheck
26 public exploit(s)
SQL injection vulnerability in Joomla! 3.7.x before 3.7.1 allows attackers to execute arbitrary SQL commands via unspecified vectors.
Affected products
n/a · n/apublic PoCs found — 26✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/44358exploitdbwww.exploit-db.com/exploits/42033unverifiedgithubgithub.com/stefanlucas/Exploit-Joomla★ 68githubgithub.com/brianwrf/Joomla3.7-SQLi-CVE-2017-8917★ 7githubgithub.com/AkuCyberSec/CVE-2017-8917-Joomla-370-SQL-Injection★ 2githubgithub.com/ztrxwzy/joomla.3.7.0exploit★ 2githubgithub.com/BaptisteContreras/CVE-2017-8917-Joomla★ 2githubgithub.com/yayateayayatea/cve-2017-8917★ 0githubgithub.com/gmohlamo/CVE-2017-8917★ 0githubgithub.com/cved-sources/cve-2017-8917★ 0githubgithub.com/Siopy/CVE-2017-8917★ 0githubgithub.com/ionutbaltariu/joomla_CVE-2017-8917★ 0githubgithub.com/gloliveira1701/Joomblah★ 0vulncheckvulncheck.com/xdb/6d8085532e19unverifiedvulncheckvulncheck.com/xdb/d5f5acbb3474unverifiedvulncheckvulncheck.com/xdb/f069188ccda4unverifiedcve_referencewww.exploit-db.com/exploits/44358/unverifiedvulncheckvulncheck.com/xdb/476cff1c27ceunverifiedvulncheckvulncheck.com/xdb/f85e76870e65unverifiedcve_referencewww.exploit-db.com/exploits/42033/unverifiedvulncheckvulncheck.com/xdb/3acf111b3701unverifiedvulncheckvulncheck.com/xdb/e8b09749427bunverifiedvulncheckvulncheck.com/xdb/d8aa992b32f4unverifiedvulncheckvulncheck.com/xdb/2cf94ed61f39unverifiedvulncheckvulncheck.com/xdb/bf036bb76361unverifiedvulncheckvulncheck.com/xdb/b6b78521b1bbunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.