ZeroHour

CVE-2022-23044

PoC ×2
CVSS 3.1
8.8 high
EPSS
<1%p36
Published
()
Modified
Description

Tiny File Manager version 2.4.8 allows an unauthenticated remote attacker to persuade users to perform unintended actions within the application. This is possible because the application is vulnerable to CSRF.

Vendors
prasathmani
Products
tiny file manager
Weakness
CWE-352
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.