Improper Access Control issue in the Workflow component of Fortra's FileCatalyst allows unauthenticated users to upload arbitrary files via the order forms page.
Metrics
Affected Vendors & Products
References
History
Fri, 29 Aug 2025 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Fri, 29 Aug 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Thu, 21 Aug 2025 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Fortra
Fortra filecatalyst Direct Fortra filecatalyst Workflow |
|
| Vendors & Products |
Fortra
Fortra filecatalyst Direct Fortra filecatalyst Workflow |
Tue, 19 Aug 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 19 Aug 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Access Control issue in the Workflow component of Fortra's FileCatalyst allows unauthenticated users to upload arbitrary files via the order forms page. | |
| Title | Unrestricted File Upload in FileCatalyst | |
| Weaknesses | CWE-306 CWE-434 |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Fortra
Published: 2025-08-19T18:01:14.137Z
Updated: 2025-08-29T20:09:24.656Z
Reserved: 2025-07-31T21:30:46.989Z
Link: CVE-2025-8450
Updated: 2025-08-19T18:29:44.341Z
Status : Awaiting Analysis
Published: 2025-08-19T18:15:29.540
Modified: 2025-08-29T20:15:35.203
Link: CVE-2025-8450
No data.