CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.4. See the original NVD description below for full technical details.
CVE
CVE-2017-1000140
Severity
MEDIUM
CVSS
5.4
EPSS
0.51%
Original NVD Description
Mahara 1.8 before 1.8.7 and 1.9 before 1.9.5 and 1.10 before 1.10.3 and 15.04 before 15.04.0 are vulnerable to a maliciously created .xml file that can have its code executed when user tries to download the file.
Related CVEs
Other vulnerabilities affecting the same vendor(s)