Description
FileRise before version 3.28.0 contains a privilege escalation vulnerability that allows authenticated low-privilege attackers to gain unauthorized read and write access by exploiting improper session isolation between the WebDAV interface and the web application session context. Attackers can combine valid Basic-Auth credentials with an active admin PHPSESSID cookie to bypass authorization boundaries, as the WebDAV layer incorrectly inherits elevated privileges from an ambient web session rather than enforcing independent stateless authentication per RFC 4918.
Published: 2026-09-16
Score: 7.6 High
EPSS: < 1% Very Low
KEV: No
Impact: Privilege Escalation
Action: Immediate Patch
AI Analysis

Impact

The vulnerability resides in the way the WebDAV interface inherits session privileges from the main web application. A low‑privilege user who authenticates with valid Basic‑Auth credentials can also supply an active administrator PHPSESSID cookie, causing the WebDAV layer to accept elevated rights it should not grant. As a result, the attacker can read and modify files that are normally restricted to administrators, which may allow further system compromise.

Affected Systems

Any deployment of FileRise versions earlier than 3.28.0, including the 3.27.x series and older releases from error311:FileRise.

Risk and Exploitability

With a CVSS score of 7.6 the vulnerability is considered high severity. The EPSS score of less than 1% indicates a low probability of immediate exploitation, and the vulnerability is not listed in the CISA KEV catalog. However, because the exploit requires only that an attacker has a legitimate account and can obtain an admin session cookie—both relatively easy to acquire in many environments—the risk is non‑negligible for organizations that expose WebDAV to the internet. The attack vector is remote, via the web interface, and would be easiest in cases where the WebDAV user name/password pair is already known or can be guessed.

Generated by OpenCVE AI on September 18, 2026 at 06:30 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade FileRise to version 3.28.0 or newer where the WebDAV authentication is properly separated from the web application session context.
  • If upgrading is not immediately possible, disable the WebDAV interface entirely for untrusted users or restrict it to internal networks only.
  • Monitor file access logs for abnormal file read/write activity that could indicate session inheritance abuse.

Generated by OpenCVE AI on September 18, 2026 at 06:30 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 01 Oct 2026 15:30:00 +0000

Type Values Removed Values Added
First Time appeared Filerise
Filerise filerise
CPEs cpe:2.3:a:filerise:filerise:*:*:*:*:*:*:*:*
Vendors & Products Filerise
Filerise filerise

Thu, 17 Sep 2026 04:30:00 +0000

Type Values Removed Values Added
First Time appeared Error311
Error311 filerise
Vendors & Products Error311
Error311 filerise

Wed, 16 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Wed, 16 Sep 2026 14:45:00 +0000

Type Values Removed Values Added
Description FileRise before version 3.28.0 contains a privilege escalation vulnerability that allows authenticated low-privilege attackers to gain unauthorized read and write access by exploiting improper session isolation between the WebDAV interface and the web application session context. Attackers can combine valid Basic-Auth credentials with an active admin PHPSESSID cookie to bypass authorization boundaries, as the WebDAV layer incorrectly inherits elevated privileges from an ambient web session rather than enforcing independent stateless authentication per RFC 4918.
Title FileRise < 3.28.0 Privilege Escalation via WebDAV Session Inheritance
Weaknesses CWE-613
References
Metrics cvssV3_1

{'score': 6.8, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N'}

cvssV4_0

{'score': 7.6, 'vector': 'CVSS:4.0/AV:N/AC:H/AT:N/PR:L/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

Error311 Filerise
Filerise Filerise
cve-icon MITRE

Status: PUBLISHED

Assigner: VulnCheck

Published:

Updated: 2026-10-01T15:21:55.595Z

Reserved: 2026-09-16T14:28:31.857Z

Link: CVE-2026-92616

cve-icon Vulnrichment

Updated: 2026-09-16T15:41:42.629Z

cve-icon NVD

Status : Deferred

Published: 2026-09-16T15:19:02.953

Modified: 2026-09-16T16:17:23.647

Link: CVE-2026-92616

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-18T06:45:04Z

Weaknesses
  • CWE-613

    Insufficient Session Expiration