CVE-2017-17976: Perfexcrm Perfex CRM
Critical severity, CVSS 9.8. EPSS: 12.5% chance of exploitation in the next 30 days.
In Utilities.php in Perfex CRM 1.9.7, Unrestricted file upload can lead to remote code execution.
Affected products
- Perfexcrm Perfex CRM: version 1.9.7 only
Published 2018-01-26. Last modified 2026-06-17.