CVE-2019-17400 PUBLISHED

The unoconv package before 0.9 mishandles untrusted pathnames, leading to SSRF and local file inclusion.

EPSS 0.44% · 62.9th percentile

Risk Scores

EPSS Score
0.44%
62.9th percentile

Affected Products

VendorProductVersions
Ubuntu:16.04:LTSunoconv0, 0.7-1.1
Ubuntu:18.04:LTSunoconv0, 0.7-1.1
Ubuntu:14.04:LTSunoconv0, 0.6-6, 0.6-3

Timeline

References

Open in Interactive Console →