Skip to content
Noroxi

Tecrail records

20 published records for vendor tecrail.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
5%
Median publish → KEV
No record has entered KEV

All records

20 records
  • CVE-2018-14728
    62This week

    upload.php in Responsive FileManager 9.13.1 allows SSRF via the url parameter.

    CriticalCVSS 9.8Proof of conceptEPSS 77%

    tecrail · responsive filemanagerAug 3, 2018

  • An issue was discovered in Responsive Filemanager through 9.14.0.

    CriticalCVSS 9.8Proof of conceptEPSS 20%

    tecrail · responsive filemanagerMar 14, 2020

  • /filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 uses external input to construct a pathname that should be withi

    HighCVSS 7.5Proof of conceptEPSS 45%

    tecrail · responsive filemanagerAug 24, 2018

  • In Responsive Filemanager < 9.12.0, an attacker can bypass upload restrictions resulting in RCE.

    CriticalCVSS 9.8Proof of conceptEPSS 2%

    tecrail · responsive filemanagerJun 28, 2023

  • upload.php in Responsive FileManager 9.13.4 and 9.14.0 allows SSRF via the url parameter because file-extension blocking is mishandled and b

    CriticalCVSS 9.8No exploitEPSS 1%

    tecrail · responsive filemanagerMar 6, 2020

  • Tecrail Responsive Filemanger path traversal

    CriticalCVSS 9.8No exploitEPSS 1%

    tecrail · responsive filemanagerJul 25, 2022

  • An issue in Tecrail Responsive FileManager v9.9.5 and below allows attackers to bypass the file extension check mechanism and upload a craft

    HighCVSS 8.8Proof of conceptEPSS 9%

    tecrail · responsive filemanagerFeb 2, 2023

  • An SSRF issue was discovered in tecrail Responsive FileManager 9.13.4 via the upload.php url parameter.

    HighCVSS 8.6No exploitEPSS 2%

    tecrail · responsive filemanagerOct 31, 2018

  • tecrail Responsive FileManager 9.13.4 allows remote attackers to write to an arbitrary file as a consequence of a paths[0] path traversal mi

    HighCVSS 7.5No exploitEPSS 5%

    tecrail · responsive filemanagerFeb 25, 2019

  • tecrail Responsive FileManager 9.13.4 allows remote attackers to write to an arbitrary image file (jpg/jpeg/png) via path traversal with the

    HighCVSS 7.5No exploitEPSS 4%

    tecrail · responsive filemanagerFeb 25, 2019

  • tecrail Responsive FileManager 9.13.4 allows remote attackers to delete an arbitrary file as a consequence of a paths[0] path traversal miti

    HighCVSS 7.5No exploitEPSS 4%

    tecrail · responsive filemanagerFeb 25, 2019

  • tecrail Responsive FileManager 9.13.4 allows remote attackers to delete an arbitrary directory as a consequence of a paths[0] path traversal

    HighCVSS 7.5No exploitEPSS 4%

    tecrail · responsive filemanagerFeb 25, 2019

  • tecrail Responsive FileManager 9.13.4 allows remote attackers to read arbitrary file via path traversal with the path parameter, through the

    HighCVSS 7.5No exploitEPSS 3%

    tecrail · responsive filemanagerFeb 25, 2019

  • tecrail Responsive FileManager 9.13.4 allows remote attackers to read arbitrary files via path traversal with the path parameter, through th

    HighCVSS 7.5No exploitEPSS 3%

    tecrail · responsive filemanagerFeb 25, 2019

  • /filemanager/upload.php in Responsive FileManager before 9.13.3 allows Directory Traversal and SSRF because the url parameter is used direct

    HighCVSS 7.5No exploitEPSS 2%

    tecrail · responsive filemanagerAug 17, 2018

  • An issue was discovered in dialog.php in tecrail Responsive FileManager 9.8.1.

    HighCVSS 7.5No exploitEPSS 1%

    tecrail · responsive filemanagerOct 10, 2018

  • /filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 does not properly validate file paths in archives, allowing for

    MediumCVSS 5.5Proof of conceptEPSS 6%

    tecrail · responsive filemanagerAug 24, 2018

  • An issue was discovered in Responsive Filemanager through 9.14.0.

    MediumCVSS 6.1No exploitEPSS 1%

    tecrail · responsive filemanagerMar 30, 2020

  • tecrail Responsive FileManager 9.13.4 allows XSS via a media file upload with an XSS payload in the name, because of mishandling of the medi

    MediumCVSS 6.1No exploitEPSS 1%

    tecrail · responsive filemanagerFeb 25, 2019

  • An issue was discovered in dialog.php in tecrail Responsive FileManager 9.8.1.

    MediumCVSS 6.1No exploitEPSS 1%

    tecrail · responsive filemanagerOct 10, 2018