6.8
CVSSv2

CVE-2015-0931

Published: 14/02/2015 Updated: 17/02/2015
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Ektron Content Management System (CMS) 8.5 and 8.7 prior to 8.7sp2 and 9.0 before sp1, when the Saxon XSLT parser is used, allows remote malicious users to execute arbitrary code via a crafted XSLT document, related to a "resource injection" issue.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ektron ektron content management system 8.5.0

ektron ektron content management system 8.7.0

ektron ektron content management system 8.9.0