{"id":"CVE-2017-14498","details":"SilverStripe CMS before 3.6.1 has XSS via an SVG document that is mishandled by (1) the Insert Media option in the content editor or (2) an admin/assets/add pathname, as demonstrated by the admin/pages/edit/EditorToolbar/MediaForm/field/AssetUploadField/upload URI, aka issue SS-2017-017.","aliases":["GHSA-j696-6m57-mcrv"],"modified":"2026-08-07T16:50:41.095911Z","published":"2017-09-15T18:29:00.227Z","references":[{"type":"ADVISORY","url":"https://docs.silverstripe.org/en/3/changelogs/3.6.1"},{"type":"ADVISORY","url":"https://github.com/silverstripe/silverstripe-framework/commit/25b77a2ff8deabe8e8894002b9a5647eaec27b0a"},{"type":"ADVISORY","url":"https://github.com/silverstripe/silverstripe-installer/commit/c25478bef75cc5482852e80a1fa6f1f0e6460e39"},{"type":"EVIDENCE","url":"http://lists.openwall.net/full-disclosure/2017/09/14/2"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/silverstripe/silverstripe-cms","events":[{"introduced":"0"},{"last_affected":"08093ea308c13f1f334a01b46d66b720bd86216e"}],"database_specific":{"cpe":"cpe:2.3:a:silverstripe:silverstripe:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"last_affected":"3.6.0"}],"source":"CPE_RANGE"}}],"versions":["3.6.0","3.6.0-rc1","3.6.0-beta2","3.6.0-beta1","3.5.3-rc1","3.5.2-rc1","3.5.2","3.5.0-rc2","3.5.0-rc1","3.0.0-rc1","3.0.0-beta3","3.0.0-beta2","3.0.0-beta1","3.0.0-alpha2","3.0.0-alpha1","HamishsTesta2","3.0.0-pr1","2.3.0-rc1","2.2.2-rc1","2.2.0-rc1"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-14498.json"}},{"ranges":[{"type":"GIT","repo":"https://github.com/silverstripe/silverstripe-framework","events":[{"introduced":"0"},{"last_affected":"143c4a63cf1f7cf5697abbe31908e446ed2ecb3e"},{"fixed":"25b77a2ff8deabe8e8894002b9a5647eaec27b0a"}],"database_specific":{"cpe":"cpe:2.3:a:silverstripe:silverstripe:*:*:*:*:*:*:*:*","extracted_events":[{"introduced":"0"},{"last_affected":"3.6.0"}],"source":["CPE_RANGE","REFERENCES"]}}],"versions":["3.6.0","3.6.0-rc1","3.6.0-beta2","3.6.0-beta1","3.0.0-rc1","3.0.0-beta3","3.0.0-beta2","3.0.0-beta1","3.0.0-alpha2","3.0.0-alpha1","2.2.2-rc1","2.3.0-rc1","2.2.0-rc1"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-14498.json"}},{"ranges":[{"type":"GIT","repo":"https://github.com/silverstripe/silverstripe-installer","events":[{"introduced":"0"},{"fixed":"c25478bef75cc5482852e80a1fa6f1f0e6460e39"}],"database_specific":{"source":"REFERENCES"}}],"versions":["3.6.0-beta2","3.6.0-beta1","3.5.3-rc1","3.5.3","3.5.2-rc1","3.5.2","3.5.1-rc2","3.5.1-rc1","3.5.1","3.5.0-rc3","3.5.0-rc2","3.5.0-rc1","3.5.0","3.4.0-rc1","3.4.0","3.3.1-rc2","3.3.1-rc1","3.3.1","3.3.0-rc3","3.3.0-rc2","3.3.0-rc1","3.3.0-beta1","3.3.0","3.0.2-rc2","3.0.2","3.0.2-rc1","3.0.1-rc1","3.0.0-rc2","3.0.0-rc1","3.0.0-beta3","3.0.0-beta2","3.0.0-beta1","3.0.0-alpha2","3.0.0-alpha1","3.0.0-pr1","2.2.2-rc1","2.3.0-rc1","2.2.0-rc4","2.2.0-rc3","2.2.0-rc2","2.2.0-rc1","2.2.0","2.1.1-rc1","2.1.1","2.1.0-rc3","2.1.0","2.1.0-rc2","2.1.0-rc1"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-14498.json"}}],"schema_version":"1.8.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N"}]}