← Vulnerability feed

Vulnerability record · CVE-2017-9757 · published 19 June 2017

CVE-2017-9757: Ipfire os command injection vulnerability

Ipfire · Ipfire

IPFire 2.19 has a Remote Command Injection vulnerability in ids.cgi via the OINKCODE parameter, which is mishandled by a shell. This can be exploited directly by authenticated users, or through CSRF.

8.8 CVSS 3.0 High EPSS 37% · top 1.5% CWE-78 · OS command injection
8.8CVSS 3.0 base score, v2 6.5
37%EPSS exploitation probability, 30 days
NoNot in CISA KEV
1Affected product versions listed by NVD
6References, 2 tagged exploit
17 Jun 2026Last modified by NVD

Description

IPFire 2.19 has a Remote Command Injection vulnerability in ids.cgi via the OINKCODE parameter, which is mishandled by a shell. This can be exploited directly by authenticated users, or through CSRF.

CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Affected products

1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2017-9757 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

8.8CVE-2021-33393IPFire backup script ownership flaw enables root code executionIPFire 2.25-core155 does not verify that /var/ipfire/backup/bin/backup.pl is owned by root, so the file may be writable by an unprivileged account. A…EPSS 60%analysed8.8CVE-2018-16232Ipfire os command injection vulnerabilityAn authenticated command injection vulnerability exists in IPFire Firewall before 2.21 Core Update 124 in backup.cgi. This allows an authenticated us…EPSS 7.8%8.7CVE-2025-34311Ipfire os command injection vulnerabilityIPFire versions prior to 2.29 (Core Update 198) contain a command injection vulnerability that allows an authenticated attacker to execute arbitrary …EPSS 14%8.7CVE-2025-34312Ipfire os command injection vulnerabilityIPFire versions prior to 2.29 (Core Update 198) contain a command injection vulnerability that allows an authenticated attacker to execute arbitrary …EPSS 2.3%7.1CVE-2025-34304Ipfire sql injection vulnerabilityIPFire versions prior to 2.29 (Core Update 198) contain a SQL injection vulnerability that allows an authenticated attacker to manipulate the SQL que…EPSS 0.39%6.5CVE-2025-50974Ipfire os command injection vulnerabilityThe Calamaris log exporter CGI (/cgi-bin/logs.cgi/calamaris.dat) in IPFire 2.29 does not properly sanitize user-supplied input before incorporating p…EPSS 0.40%6.1CVE-2025-50976Ipfire cross-site scripting vulnerabilityIPFire 2.29 DNS management interface (dns.cgi) fails to properly sanitize user-supplied input in the NAMESERVER, REMARK, and TLS_HOSTNAME query param…EPSS 0.23%6.1CVE-2020-21142Ipfire cross-site scripting vulnerabilityCross Site Scripting (XSS) vulnerabilty in IPFire 2.23 via the IPfire web UI in the mail.cgi.EPSS 0.69%

Source: NIST National Vulnerability Database (record CVE-2017-9757), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.