{"id":"CVE-2017-20171","details":"A vulnerability classified as critical has been found in PrivateSky apersistence. This affects an unknown part of the file db/sql/mysqlUtils.js. The manipulation leads to sql injection. The identifier of the patch is 954425f61634b556fe644837a592a5b8fcfca068. It is recommended to apply a patch to fix this issue. The identifier VDB-218457 was assigned to this vulnerability.","modified":"2026-07-08T05:49:46.274001880Z","published":"2023-01-17T23:15:15.417Z","database_specific":{"unresolved_ranges":[{"source":"CPE_RANGE","vendor_product":"apersistence_project:apersistence","cpes":["cpe:2.3:a:apersistence_project:apersistence:*:*:*:*:*:*:*:*"],"extracted_events":[{"fixed":"2017-04-10"}]}]},"references":[{"type":"REPORT","url":"https://vuldb.com/?ctiid.218457"},{"type":"REPORT","url":"https://vuldb.com/?id.218457"},{"type":"FIX","url":"https://github.com/PrivateSky/apersistence/commit/954425f61634b556fe644837a592a5b8fcfca068"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/privatesky/apersistence","events":[{"introduced":"0"},{"fixed":"954425f61634b556fe644837a592a5b8fcfca068"}],"database_specific":{"source":"REFERENCES"}}],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-20171.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}