Affects Version Manager: depends. Version Manager does not use the affected MultipartStream code, but the SSO server component (if installed) supports multi-part attachments, so requests sent there could be affect by this issue. Low: Directory disclosure CVE - 2015 -5345