CVE-2017-11421: Gnome-Exe-Thumbnailer Project Gnome-Exe-Thumbnailer

High severity, CVSS 7.8. EPSS: 0.6% chance of exploitation in the next 30 days.

gnome-exe-thumbnailer before 0.9.5 is prone to a VBScript Injection when generating thumbnails for MSI files, aka the "Bad Taste" issue. There is a local attack if the victim uses the GNOME Files file manager, and navigates to a directory containing a .msi file with VBScript code in its filename.

Affected products

Published 2017-07-18. Last modified 2026-06-17.