CVE-2015-5721EPSS p85.0%

CVE-2015-5721CVE-2015-5721

misp-project / misp

Description

Malware Information Sharing Platform (MISP) before 2.3.90 allows remote attackers to conduct PHP object injection attacks via crafted serialized data, related to TemplatesController.php and populate_event_from_template_attributes.ctp.

Scoring

CVSS 9.8 ()
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS2.63% probability of exploitation · percentile 85.0% · 2026-10-05T12:00:23Z
Last modified2026-06-23
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.