HomeDefault status
unaffected
Any version before 2025.1.3
affected
Any version before 2024.2.12
affected
Any version before 2023.3.19
affected
Description
Unrestricted Upload of File with Dangerous Type vulnerability in Salesforce Tableau Server on Windows, Linux (Extensible Protocol Service modules) allows Alternative Execution Due to Deceptive Filenames (RCE). This issue affects Tableau Server: before 2025.1.3, before 2024.2.12, before 2023.3.19.
Problem types
CWE-434 Unrestricted Upload of File with Dangerous Type
Product status
Any version before 2025.1.3
Any version before 2024.2.12
Any version before 2023.3.19
References
help.salesforce.com/s/articleView?id=005105043&type=1