CVE-2015-5601: Edx Edx-Platform
High severity, CVSS 8.8. EPSS: 1.5% chance of exploitation in the next 30 days.
edx-platform before 2015-07-20 allows code execution by privileged users because the course import endpoint mishandles .tar.gz files.
Affected products
- Edx Edx-Platform: before 2015-07-20 (fixed in 2015-07-20)
Published 2019-07-29. Last modified 2026-06-17.