EmreOvunc/FileRun-Vulnerabilities

EmreOvunc/FileRun-Vulnerabilities

Releases0
Stars4
FileRun application has many vulnerabilities such as cross-site scripting, open redirection, directory listing..

CVE History

CVEPublishedCVSS v3CVSS v2
6.1 MEDIUM4.3 MEDIUM

FileRun 2019.05.21 allows XSS via the filename to the ?module=fileman&section=do&page=up URI. This issue has been fixed in FileRun 2019.06.01.

5.3 MEDIUM5 MEDIUM

FileRun 2019.05.21 allows css/ext-ux Directory Listing. This issue has been fixed in FileRun 2019.06.01.

5.3 MEDIUM5 MEDIUM

FileRun 2019.05.21 allows customizables/plugins/audio_player Directory Listing. This issue has been fixed in FileRun 2019.06.01.

5.3 MEDIUM5 MEDIUM

FileRun 2019.05.21 allows images/extjs Directory Listing. This issue has been fixed in FileRun 2019.06.01.