Unrated severityNVD Advisory· Published Jan 28, 2026· Updated Jan 28, 2026
Unrestricted File Upload Vulnerability in Explorance Blue
CVE-2025-57794
Description
Explorance Blue versions prior to 8.14.9 contain an authenticated unrestricted file upload vulnerability in the administrative interface. The application does not adequately restrict uploaded file types, allowing malicious files to be uploaded and executed by the server. This condition enables remote code execution under default configurations.
Affected products
2<8.14.9+ 1 more
- (no CPE)range: <8.14.9
- (no CPE)range: 0
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- github.com/mandiant/Vulnerability-Disclosures/blob/master/2026/MNDT-2026-0003.mdmitrethird-party-advisory
- online-help.explorance.com/blue/articles/security-advisories-(january-2026)mitrevendor-advisory
- online-help.explorance.com/blue/articles/security-advisory:-cve-2025-57794mitrevendor-advisory
- www.explorance.com/products/bluemitreproduct
News mentions
0No linked articles in our index yet.