Security Advisory
CVE-2016-6124
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
IBM Kenexa LMS on Cloud 13.1 and 13.2 - 13.2.4 could allow a remote attacker to upload arbitrary files, which could allow the attacker to execute arbitrary code on the vulnerable server.