CVE-2015-5601: Edx Edx-Platform

High severity, CVSS 8.8. EPSS: 1.5% chance of exploitation in the next 30 days.

edx-platform before 2015-07-20 allows code execution by privileged users because the course import endpoint mishandles .tar.gz files.

Affected products

  • Edx Edx-Platform: before 2015-07-20 (fixed in 2015-07-20)

Published 2019-07-29. Last modified 2026-06-17.