Unrated severityNVD Advisory· Published Jul 25, 2025· Updated Feb 26, 2026
CVE-2025-52449
CVE-2025-52449
Description
Unrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (Extensible Protocol Service modules) allows Alternative Execution Due to Deceptive Filenames (RCE). This issue affects Tableau Server: before 2025.1.3, before 2024.2.12, before 2023.3.19.
Affected products
2- Range: <2025.1.3, <2024.2.12, <2023.3.19
- Salesforce/Tableau Serverv5Range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.