File Manipulation Vulnerability in Malware Information Sharing Platform
CVE-2015-5719
9.8CRITICAL
What is CVE-2015-5719?
The Malware Information Sharing Platform (MISP) prior to version 2.3.92 contains a vulnerability in app/Controller/TemplatesController.php that inadequately restricts filenames within the tmp/files/ directory. This oversight may lead to unauthorized access, exploitation through arbitrary file uploads, or other undefined attack vectors. Proper filename validation and security measures are essential to mitigate the risks associated with this vulnerability.
