8.2
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H
Description
Improper Access Control issue in the Workflow component of Fortra's FileCatalyst allows unauthenticated users to upload arbitrary files via the order forms page.
Basic Information
ID
CVE-2025-8450
Source
Fortra
Published
Aug 19, 2025 at 18:01
Modified
Aug 19, 2025 at 18:47
Affected Product
Vendor
Fortra
Product
FileCatalyst
Version
5.1.6
Affected Versions
Fortra FileCatalyst 5.1.6