2019-07-29 15:41:14
mitre
PUBLISHED
edx-platform before 2015-07-20 allows code execution by privileged users because the course import endpoint mishandles .tar.gz files.