Embedthis GoAhead before 3.6.5 allows remote code execution if CGI is enabled and a CGI program is dynamically linked
Published Dec 12, 2017 ·Due Jun 10, 2022
8.1
HIGHCVSS 3.1
EPSS 96.26%
Description
Embedthis GoAhead before 3.6.5 allows remote code execution if CGI is enabled and a CGI program is dynamically linked. This is a result of initializing the environment of forked CGI scripts using untrusted HTTP request parameters in the cgiHandler function in cgi.c. When combined with the glibc dynamic linker, this behaviour can be abused for remote code execution using special parameter names such as LD_PRELOAD. An attacker can POST their shared object payload in the body of the request, and reference it using /proc/self/fd/0.
Affected products
No data.
Configuration 2
- 3.0
- 4.0
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
No CVSS v3.0 score for this CVE.
AV:N/AC:M/Au:N/C:P/I:P/A:P
Date Added
Dec 10, 2021
Patch Due
Jun 10, 2022
Required Action
Apply updates per vendor instructions.
CISA SSVC (Vulnrichment)
Stakeholder-Specific Vulnerability Categorization from CISA ADP.
Exploitation
ActiveAutomatable
NoTechnical Impact
TotalDecision
n/aAssessed Feb 4, 2025 · SSVC 2.0.3
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 2, 2026.
Score over time
2021–2026- EPSS v1
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v1
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (15 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 2, 2026 | 96.26% (0.96262) | 99.88th | v5 (v2026.06.15) |
| Jun 15, 2026 | 96.33% (0.96327) | 99.87th | v5 (v2026.06.15) |
| Mar 17, 2025 | 94.37% (0.94373) | 99.96th | v4 (v2025.03.14) |
| Dec 12, 2024 | 97.43% (0.97431) | 99.96th | v3 (v2023.03.01) |
| Apr 28, 2024 | 97.45% (0.97455) | 99.95th | v3 (v2023.03.01) |
| Feb 7, 2024 | 97.44% (0.97436) | 99.93th | v3 (v2023.03.01) |
| Oct 22, 2023 | 97.45% (0.97454) | 99.94th | v3 (v2023.03.01) |
| Jul 8, 2023 | 97.47% (0.97470) | 99.93th | v3 (v2023.03.01) |
| May 5, 2023 | 97.48% (0.97479) | 99.94th | v3 (v2023.03.01) |
| Mar 7, 2023 | 97.47% (0.97468) | 99.92th | v3 (v2023.03.01) |
| Mar 6, 2023 | 95.34% (0.95344) | 99.97th | v2 (v2022.01.01) |
| Feb 4, 2022 | 95.34% (0.95344) | 99.97th | v2 (v2022.01.01) |
| Feb 3, 2022 | 58.28% (0.58283) | 99.18th | v1 |
| Sep 1, 2021 | 58.28% (0.58283) | 99.76th | v1 |
| Apr 14, 2021 | 58.28% (0.58283) | 0.00th | v1 |
No CWE recorded.
References (9)
- http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html x_refsource_CONFIRMPatchThird Party Advisory
- http://www.securitytracker.com/id/1040702 vdb-entryx_refsource_SECTRACKBroken LinkThird Party AdvisoryVDB Entry
- https://github.com/elttam/advisories/tree/master/CVE-2017-17562 x_refsource_MISCBroken LinkThird Party Advisory
- https://github.com/embedthis/goahead/commit/6f786c123196eb622625a920d54048629a7caa74 x_refsource_MISCBroken LinkPatchThird Party Advisory
- https://github.com/embedthis/goahead/issues/249 x_refsource_MISCBroken LinkIssue TrackingThird Party Advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2017-17562 government-resourceUS Government Resource
- https://www.elttam.com.au/blog/goahead/ x_refsource_MISCBroken LinkExploitPatchThird Party Advisory
- https://www.exploit-db.com/exploits/43360/ exploitx_refsource_EXPLOIT-DBThird Party AdvisoryVDB Entry
- https://www.exploit-db.com/exploits/43877/ exploitx_refsource_EXPLOIT-DBThird Party AdvisoryVDB Entry
| Link | Providers | Tags |
|---|---|---|
| http://www.oracle.com/technetwork/security-advisory/cpuapr2018-3678067.html | x_refsource_CONFIRMPatchThird Party Advisory | |
| http://www.securitytracker.com/id/1040702 | vdb-entryx_refsource_SECTRACKBroken LinkThird Party AdvisoryVDB Entry | |
| https://github.com/elttam/advisories/tree/master/CVE-2017-17562 | x_refsource_MISCBroken LinkThird Party Advisory | |
| https://github.com/embedthis/goahead/commit/6f786c123196eb622625a920d54048629a7caa74 | x_refsource_MISCBroken LinkPatchThird Party Advisory | |
| https://github.com/embedthis/goahead/issues/249 | x_refsource_MISCBroken LinkIssue TrackingThird Party Advisory | |
| https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2017-17562 | government-resourceUS Government Resource | |
| https://www.elttam.com.au/blog/goahead/ | x_refsource_MISCBroken LinkExploitPatchThird Party Advisory | |
| https://www.exploit-db.com/exploits/43360/ | exploitx_refsource_EXPLOIT-DBThird Party AdvisoryVDB Entry | |
| https://www.exploit-db.com/exploits/43877/ | exploitx_refsource_EXPLOIT-DBThird Party AdvisoryVDB Entry |
Change history (0)
No recorded changes yet.