Skip to content
Noroxi

filecloud records

7 published records for vendor filecloud.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
14.3%
Median publish → KEV
No record has entered KEV

All records

7 records
  • In FileCloud before 21.3, the CSV user import functionality is vulnerable to Cross-Site Request Forgery (CSRF).

    HighCVSS 8.8Proof of conceptEPSS 3%

    filecloud · filecloudFeb 15, 2022

  • CVE-2016-6578
    35Monitor

    CodeLathe FileCloud, version 13.0.0.32841 and earlier, is vulnerable to cross-site request forgery (CSRF)

    HighCVSS 8.8No exploitEPSS 1%

    filecloud · filecloudJul 13, 2018

  • In FileCloud before 21.3, file upload is not protected against Cross-Site Request Forgery (CSRF).

    HighCVSS 8.8No exploitEPSS 0%

    filecloud · filecloudFeb 15, 2022

  • FileCloud Versions 20.2 and later allows remote attackers to potentially cause unauthorized remote code execution and access to reported API

    HighCVSS 7.2No exploitEPSS 3%

    filecloud · filecloudNov 23, 2022

  • CVE-2022-1958
    26Monitor

    FileCloud NTFS access control

    MediumCVSS 6.5No exploitEPSS 1%

    filecloud · filecloudJun 15, 2022

  • CodeLathe FileCloud before 20.2.0.11915 allows username enumeration.

    MediumCVSS 5.3No exploitEPSS 1%

    filecloud · filecloudOct 2, 2020

  • All versions of FileCloud prior to 21.3 are vulnerable to user enumeration.

    MediumCVSS 5.3No exploitEPSS 1%

    filecloud · filecloudFeb 24, 2022