CVE-2015-4425 | Pimcore up to <=11.5.3 add-asset-compatibility dir path traversal (EDB-37609)
A vulnerability classified as critical has been found in Pimcore. Affected is an unknown function of the file admin/asset/add-asset-compatibility. The manipulation of the argument dir leads to path traversal.
This vulnerability is traded as CVE-2015-4425. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.