CVE-2019-12905

Published
View on NVD ↗
CVSS v3
6.1
MEDIUM
CVSS v2
4.3
MEDIUM
Affected
1
PROJECT

Description

FileRun 2019.05.21 allows XSS via the filename to the ?module=fileman&section=do&page=up URI. This issue has been fixed in FileRun 2019.06.01.

FileRun application has many vulnerabilities such as cross-site scripting, open redirection, directory listing..
GitHubGitHub
4