Description
Explorance Blue versions prior to 8.14.13 contain an authenticated remote file download vulnerability in a web service component. In default configurations, this flaw can be leveraged to achieve remote code execution.
Problem types
CWE-434 Unrestricted Upload of File with Dangerous Type
Product status
Any version before 8.14.13
Credits
Abdulrahman Nour, Mandiant
Abdulrahman Nour, Mandiant
References
www.explorance.com/products/blue
online-help.explorance.com/...rity-advisories-(january-2026)
online-help.explorance.com/...urity-advisory:-cve-2025-57795
github.com/...Disclosures/blob/master/2026/MNDT-2026-0004.md