Known vulnerabilities in Responsive FileManager

Vendor: TecRail
Software CPE: cpe:2.3:a:tecrail:responsive_filemanager:*:*:*:*:*:*:*:*
Total vulnerabilities: 17
Public exploits: 3
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting Responsive FileManager Responsive FileManager is affected by 17 known vulnerabilities: 3 high, 10 medium, 4 low Critical High Medium Low

Vulnerabilities (17)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU26482 - Server-Side Request Forgery (SSRF)
CVE-2020-10212
CWE-918 Medium
No
No
- 31.03.2020 SB2020033116
#VU26481 - Improper input validation
CVE-2020-10567
CWE-20 High
No
No
- 31.03.2020 SB2020033116
#VU26480 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2020-11106
CWE-79 Low
No
No
- 31.03.2020 SB2020033116
#VU36104 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-20789
CWE-22 Medium
No
No
- 25.02.2019 SB2018103120
#VU36105 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-20790
CWE-22 Medium
No
No
- 25.02.2019 SB2018103120
#VU36106 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2018-20791
CWE-79 Low
No
No
- 25.02.2019 SB2018103120
#VU36107 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-20792
CWE-22 Medium
No
No
- 25.02.2019 SB2018103120
#VU36108 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-20793
CWE-22 Medium
No
No
- 25.02.2019 SB2018103120
#VU36109 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-20794
CWE-22 Medium
No
No
- 25.02.2019 SB2018103120
#VU36110 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-20795
CWE-22 Medium
No
No
- 25.02.2019 SB2018103120
#VU36460 - Server-Side Request Forgery (SSRF)
CVE-2018-18867
CWE-918 High
No
No
- 31.10.2018 SB2018103120
#VU36551 - Improper Authentication
CVE-2018-18061
CWE-287 Medium
No
No
- 10.10.2018 SB2018101025
#VU36552 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2018-18062
CWE-79 Low
No
No
- 10.10.2018 SB2018101025
#VU31225 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-15535
CWE-22 Medium
Available
No
9.13.4 24.08.2018 SB2018082407
#VU31226 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-15536
CWE-22 Low
Available
No
9.13.4 24.08.2018 SB2018082407
#VU31232 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2018-15495
CWE-22 Medium
No
No
9.13.3 18.08.2018 SB2018081803
#VU36797 - Server-Side Request Forgery (SSRF)
CVE-2018-14728
CWE-918 High
Available
No
- 03.08.2018 SB2018080317