ZeroHour

CVE-2020-12102

CVSS 3.1
7.7 high
EPSS
2%p78
Published
()
Modified
Description

In Tiny File Manager 2.4.1, there is a Path Traversal vulnerability in the ajax recursive directory listing functionality. This allows authenticated users to enumerate directories and files on the filesystem (outside of the application scope).

Vendors
prasathmani
Products
tiny file manager
Weakness
CWE-22
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.