{"cve":{"cve_id":"CVE-2017-20100","is_kev":false,"kev_date_added":null,"kev_vendor_project":null,"kev_product":null,"kev_vulnerability_name":null,"kev_short_description":null,"kev_required_action":null,"kev_due_date":null,"kev_known_ransomware":null,"kev_notes":null,"kev_cwes":null,"epss_score":0.00599,"epss_percentile":0.44023,"epss_as_of":"2026-06-23","description":"A vulnerability was found in Air Transfer 1.0.14/1.2.1. It has been rated as problematic. Affected by this issue is some unknown functionality. The manipulation leads to basic cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.","published_at":"2022-06-27T13:25:17Z","last_modified_at":null,"cvss_v3_score":3.5,"cvss_v3_vector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:L/A:N","cvss_v3_severity":"LOW","cvss_v4_score":null,"cvss_v4_vector":null,"cvss_v4_severity":null,"ssvc_decision":null,"ssvc_exploitation":"poc","ssvc_automatable":false,"ssvc_technical_impact":"partial","cwes":["CWE-80"],"nvd_references":["https://www.vulnerability-lab.com/get_content.php?id=2035","https://vuldb.com/?id.97280"],"vuln_status":null,"trending_score":null,"is_trending":false,"has_trended":false,"trended_number_one":false,"trending_peak_score":null,"trending_peak_rank":null,"started_trending_at":null,"trended_number_one_at":null,"summary_generated":null,"summary_generated_at":null,"summary_model":null,"created_at":"2026-06-24T00:09:39.878444Z","updated_at":"2026-06-28T23:09:54.477707Z"},"effective_severity":"LOW","badges":[],"impact_analysis":[],"cvss_v3_decoded":{"version":"3.1","metrics":[{"metric":"AV","name":"Attack Vector","value":"N","value_label":"Network"},{"metric":"AC","name":"Attack Complexity","value":"L","value_label":"Low"},{"metric":"PR","name":"Privileges Required","value":"L","value_label":"Low"},{"metric":"UI","name":"User Interaction","value":"R","value_label":"Required"},{"metric":"S","name":"Scope","value":"U","value_label":"Unchanged"},{"metric":"C","name":"Confidentiality","value":"N","value_label":"None"},{"metric":"I","name":"Integrity","value":"L","value_label":"Low"},{"metric":"A","name":"Availability","value":"N","value_label":"None"}]},"cvss_v4_decoded":{"version":null,"metrics":[]},"affected":[{"vendor_slug":"unspecified","vendor_name":"unspecified","product_slug":"air-transfer","product_name":"Air Transfer","version_start":"1.0.14","version_start_inclusive":true,"version_end":"1.0.14","version_end_inclusive":true,"cpe23_uri":"cve5:unspecified:air-transfer:1.0.14:1.0.14"},{"vendor_slug":"unspecified","vendor_name":"unspecified","product_slug":"air-transfer","product_name":"Air Transfer","version_start":"1.2.1","version_start_inclusive":true,"version_end":"1.2.1","version_end_inclusive":true,"cpe23_uri":"cve5:unspecified:air-transfer:1.2.1:1.2.1"}],"exploit_refs":[],"news":[],"references":[{"url":"https://www.vulnerability-lab.com/get_content.php?id=2035","source_type":"MISC","tags":[]},{"url":"https://vuldb.com/?id.97280","source_type":"MISC","tags":[]}],"timeline":[{"type":"published","at":"2022-06-27T13:25:17Z","label":"CVE published","source":null},{"type":"ssvc_changed","at":"2026-06-24T00:31:06.710831Z","label":"SSVC decision revised","source":"vulnrichment"},{"type":"ssvc_changed","at":"2026-06-24T00:31:06.710831Z","label":"SSVC decision revised","source":"vulnrichment"},{"type":"ssvc_changed","at":"2026-06-24T00:31:06.710831Z","label":"SSVC decision revised","source":"vulnrichment"},{"type":"cvss_changed","at":"2026-06-24T00:31:06.710831Z","label":"CVSS score revised","source":"vulnrichment"},{"type":"cvss_changed","at":"2026-06-24T00:31:06.710831Z","label":"CVSS score revised","source":"vulnrichment"},{"type":"cvss_changed","at":"2026-06-24T00:31:06.710831Z","label":"CVSS score revised","source":"vulnrichment"}]}