CVE-2017-17832: Serverscheck Monitoring Software
Medium severity, CVSS 5.4. EPSS: 0.7% chance of exploitation in the next 30 days.
ServersCheck Monitoring Software before 14.2.3 is prone to a cross-site scripting vulnerability as user supplied-data is not validated/sanitized when passed in the settings_SMS_ALERT_TYPE parameter, and JavaScript can be executed on settings-save.html (the Settings - SMS Alerts page).
Affected products
- Serverscheck Monitoring Software: before 14.2.3 (fixed in 14.2.3)
Published 2017-12-27. Last modified 2026-06-17.