CVE-2015-7815: Matomo

High severity, CVSS 7.5. EPSS: 3% chance of exploitation in the next 30 days.

Directory traversal vulnerability in core/ViewDataTable/Factory.php in Piwik before 2.15.0 allows remote attackers to include and execute arbitrary local files via the viewDataTable parameter.

Affected products

  • Matomo Matomo: up to and including 2.14.3

Published 2015-11-16. Last modified 2026-06-17.