Medium severity6.5NVD Advisory· Published Jul 25, 2017· Updated May 13, 2026
CVE-2015-4463
CVE-2015-4463
Description
The file_manager component in eFront CMS before 3.6.15.5 allows remote authenticated users to bypass intended file-upload restrictions by appending a crafted parameter to the file URL.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- mohankallepalli.blogspot.in/2015/05/eFront-cms-multiple-bugs.htmlnvdExploitThird Party Advisory
- forum.efrontlearning.net/viewtopic.phpnvdVendor Advisory
News mentions
0No linked articles in our index yet.