CVE-2015-9263: Idera Uptime Infrastructure Monitor

Critical severity, CVSS 9.8. EPSS: 13.3% chance of exploitation in the next 30 days.

An issue was discovered in post2file.php in Up.Time Monitoring Station 7.5.0 (build 16) and 7.4.0 (build 13). It allows an attacker to upload an arbitrary file, such as a .php file that can execute arbitrary OS commands.

Affected products

  • Idera Uptime Infrastructure Monitor: version 7.4.0 only; version 7.5.0 only

Published 2018-08-27. Last modified 2026-06-17.