CVE-2017-17976: Perfexcrm Perfex CRM

Critical severity, CVSS 9.8. EPSS: 12.5% chance of exploitation in the next 30 days.

In Utilities.php in Perfex CRM 1.9.7, Unrestricted file upload can lead to remote code execution.

Affected products

Published 2018-01-26. Last modified 2026-06-17.