CVE-2017-1000009: Akeneo Product Information Management
Critical severity, CVSS 9.8. EPSS: 3.9% chance of exploitation in the next 30 days.
Akeneo PIM CE and EE <1.6.6, <1.5.15, <1.4.28 are vulnerable to shell injection in the mass edition, resulting in remote execution.
Affected products
- Akeneo Product Information Management: version 1.4.0 only; version 1.4.1 only; version 1.4.2 only; version 1.4.3 only; version 1.4.4 only; version 1.4.5 only; …
Published 2017-07-17. Last modified 2026-06-17.