CVE-2018-17055: Progress Sitefinity

High severity, CVSS 7.5. EPSS: 1% chance of exploitation in the next 30 days.

An arbitrary file upload vulnerability in Progress Sitefinity CMS versions 4.0 through 11.0 related to image uploads.

Affected products

  • Progress Sitefinity: from 4.0, up to and including 11.0

Published 2018-09-28. Last modified 2026-06-17.