File Upload Bypass Vulnerability in eFront CMS

File Upload Bypass Vulnerability in eFront CMS

CVE-2015-4463 · MEDIUM Severity

AV:N/AC:L/AU:S/C:N/I:P/A:N

The file_manager component in eFront CMS before 3.6.15.5 allows remote authenticated users to bypass intended file-upload restrictions by appending a crafted parameter to the file URL.

Learn more about our Cms Pen Testing.