Mndpsingh287

File Manager

5 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 1.15%
  • Veröffentlicht 13.08.2025 03:42:04
  • Zuletzt bearbeitet 15.04.2026 00:35:42

Several WordPress plugins using elFinder versions 2.1.64 and prior are vulnerable to Directory Traversal in various versions. This makes it possible for unauthenticated attackers to delete arbitrary files. Successful exploitation of this vulnerabilit...

  • EPSS 0.15%
  • Veröffentlicht 01.11.2024 15:15:22
  • Zuletzt bearbeitet 15.04.2026 00:35:42

Missing Authorization vulnerability in mndpsingh287 File Manager allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects File Manager: from n/a through 7.2.7.

  • EPSS 1.86%
  • Veröffentlicht 09.04.2024 19:15:35
  • Zuletzt bearbeitet 08.04.2026 19:21:09

The File Manager plugin for WordPress is vulnerable to Directory Traversal in all versions up to, and including, 7.2.5 via the fm_download_backup function. This makes it possible for authenticated attackers, with administrator access and above, to re...

  • EPSS 5.78%
  • Veröffentlicht 21.03.2024 04:15:09
  • Zuletzt bearbeitet 08.04.2026 18:20:42

The File Manager plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 7.2.4. This is due to missing or incorrect nonce validation on the wp_file_manager page that includes files through the 'lang' par...

  • EPSS 71.01%
  • Veröffentlicht 13.03.2024 16:15:08
  • Zuletzt bearbeitet 08.04.2026 18:18:42

The File Manager and File Manager Pro plugins for WordPress are vulnerable to Directory Traversal in versions up to, and including version 7.2.1 (free version) and 8.3.4 (Pro version) via the target parameter in the mk_file_folder_manager_action_cal...