Improper Access Control issue in the Workflow component of Fortra's FileCatalyst allows unauthenticated users to upload arbitrary files via the order forms page.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.cve.org/cverecord?id=CVE-2025-8450 |
![]() ![]() |
History
Thu, 21 Aug 2025 13:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Fortra
Fortra filecatalyst Direct Fortra filecatalyst Workflow |
|
Vendors & Products |
Fortra
Fortra filecatalyst Direct Fortra filecatalyst Workflow |
Tue, 19 Aug 2025 19:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 19 Aug 2025 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Improper Access Control issue in the Workflow component of Fortra's FileCatalyst allows unauthenticated users to upload arbitrary files via the order forms page. | |
Title | Unrestricted File Upload in FileCatalyst | |
Weaknesses | CWE-306 CWE-434 |
|
References |
| |
Metrics |
cvssV3_1
|

Status: PUBLISHED
Assigner: Fortra
Published: 2025-08-19T18:01:14.137Z
Updated: 2025-08-19T18:47:33.145Z
Reserved: 2025-07-31T21:30:46.989Z
Link: CVE-2025-8450

Updated: 2025-08-19T18:29:44.341Z

Status : Awaiting Analysis
Published: 2025-08-19T18:15:29.540
Modified: 2025-08-20T14:40:17.713
Link: CVE-2025-8450

No data.