CVE-2017-17086

Severity CVSS v4.0:
Pending analysis
Type:
CWE-20 Input Validation
Publication date:
01/12/2017
Last modified:
20/04/2025

Description

Indeo Otter through 1.7.4 mishandles a "" substring in an initial DP payload, which allows remote attackers to cause a denial of service (crash) or possibly have unspecified other impact, as demonstrated by the Plan Editor.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:inedo:otter:*:*:*:*:*:*:*:* 1.7.4 (including)