CVE-2017-6803

HIGH

SolarWinds FTP Voyager 16.2.0 - CSRF

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2017-6803. PoCs published by hyp3rlinx.

AI-analyzed exploit summary This exploit demonstrates a CSRF vulnerability in FTP Voyager Scheduler v16.2.0, allowing remote command execution via crafted HTTP requests. It includes PoC forms to change the admin password and trigger a persistent DoS by terminating the scheduler process.

Description

Multiple cross-site request forgery (CSRF) vulnerabilities in the web interface in the Scheduler in SolarWinds (formerly Serv-U) FTP Voyager 16.2.0 allow remote attackers to hijack the authentication of users for requests that (1) change the admin password, (2) terminate the scheduler, or (3) possibly execute arbitrary commands via crafted requests to Admin/XML/Result.xml.

Exploits (1)

exploitdb WORKING POC VERIFIED
by hyp3rlinx · htmlwebappsxml
https://www.exploit-db.com/exploits/41574

This exploit demonstrates a CSRF vulnerability in FTP Voyager Scheduler v16.2.0, allowing remote command execution via crafted HTTP requests. It includes PoC forms to change the admin password and trigger a persistent DoS by terminating the scheduler process.

Classification
Working Poc 95%
Attack Type
Rce
Complexity
Trivial
Reliability
Reliable
Target: FTP Voyager Scheduler v16.2.0
Auth required
Prerequisites: Authenticated user session · Victim visits attacker-controlled webpage
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/96814
Exploit, Third Party Advisory, VDB Entry exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/41574/

Scores

CVSS v3 8.8
EPSS 0.0018
EPSS Percentile 39.2%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-352
Status published
Products (1)
solarwinds/ftp_voyager 16.2.0
Published Mar 20, 2017
Tracked Since Feb 18, 2026