Vulnerabilities
4 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2023-3784 | A vulnerability was found in Dooblou WiFi File Explorer 1.13.3. A vulnerability was found in Dooblou WiFi File Explorer 1.13.3. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation of the argument search/order/download/mode leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-235051. NVD description · AI analysis pending | 5.4 | <1% | PoC ×2 |
| — | |
| CVE-2020-23058 | An issue in the authentication mechanism in Nong Ge File Explorer v1.4 unauthenticated allows to access sensitive data. An issue in the authentication mechanism in Nong Ge File Explorer v1.4 unauthenticated allows to access sensitive data. NVD description · AI analysis pending | 4.6 | <1% | PoC |
| — | |
| CVE-2020-7998 | An arbitrary file upload vulnerability has been discovered in the Super File Explorer app 1.0.1 for iOS. An arbitrary file upload vulnerability has been discovered in the Super File Explorer app 1.0.1 for iOS. The vulnerability is located in the developer path that is accessible and hidden next to the root path. By default, there is no password set for the FTP or Web UI service. NVD description · AI analysis pending | 8.8 | 2% |
| — | ||
| CVE-2017-12761 | http://codecanyon.net/user/Endober WebFile Explorer 1.0 is affected by: http://codecanyon.net/user/Endober WebFile Explorer 1.0 is affected by: SQL Injection. The impact is: Arbitrary File Download (remote). The component is: $file = $_GET['id'] in download.php. The attack vector is: http://speicher.example.com/envato/codecanyon/demo/web-file-explorer/download.php?id=WebExplorer/../config.php. NVD description · AI analysis pending | 7.5 | 3% | PoC |
| — |