First published: Mon Nov 16 2015(Updated: )
Directory traversal vulnerability in core/ViewDataTable/Factory.php in Piwik before 2.15.0 allows remote attackers to include and execute arbitrary local files via the viewDataTable parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MediaWiki Matomo | <=2.14.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-7815 is classified as a medium severity vulnerability due to its potential for local file inclusion and remote code execution.
To fix CVE-2015-7815, upgrade Piwik to version 2.15.0 or later.
CVE-2015-7815 affects Piwik versions prior to 2.15.0.
CVE-2015-7815 allows attackers to execute arbitrary local files through a directory traversal exploit.
Yes, there are public exploits available that demonstrate the local file inclusion vulnerability outlined in CVE-2015-7815.