CVE-2017-1000215: Xrootd

Critical severity, CVSS 9.8. EPSS: 6.5% chance of exploitation in the next 30 days.

ROOT xrootd version 4.6.0 and below is vulnerable to an unauthenticated shell command injection resulting in remote code execution

Affected products

  • Xrootd Xrootd: up to and including 4.6.0

Published 2017-11-17. Last modified 2026-06-17.