Tecrail kayıtları
tecrail üreticisine ait 20 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 1
- Düzeltme kaydı olan
- %5
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')10
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-918 Server-Side Request Forgery (SSRF)3
- CWE-434 Unrestricted Upload of File with Dangerous Type2
- CWE-20 Improper Input Validation1
- CWE-287 Improper Authentication1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
20 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
62Bu hafta | CVE-2018-14728Kavram kanıtı | upload.php in Responsive FileManager 9.13.1 allows SSRF via the url parameter.tecrail · responsive filemanager · CWE-918 | Kritik9,8 | — | %76,5 | 3 Ağu 2018 |
45Planlayın | CVE-2020-10567Kavram kanıtı | An issue was discovered in Responsive Filemanager through 9.14.0.tecrail · responsive filemanager · CWE-20 | Kritik9,8 | — | %19,6 | 14 Mar 2020 |
44Planlayın | CVE-2018-15535Kavram kanıtı | /filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 uses external input to construct a pathname that should be withitecrail · responsive filemanager · CWE-22 | Yüksek7,5 | — | %45,2 | 24 Ağu 2018 |
40Planlayın | CVE-2022-44276Kavram kanıtı | In Responsive Filemanager < 9.12.0, an attacker can bypass upload restrictions resulting in RCE.tecrail · responsive filemanager · CWE-434 | Kritik9,8 | — | %2,3 | 28 Haz 2023 |
39İzleyin | CVE-2020-10212İstismar yok | upload.php in Responsive FileManager 9.13.4 and 9.14.0 allows SSRF via the url parameter because file-extension blocking is mishandled and btecrail · responsive filemanager · CWE-918 | Kritik9,8 | — | %1,5 | 6 Mar 2020 |
39İzleyin | CVE-2017-20145İstismar yok | Tecrail Responsive Filemanger path traversaltecrail · responsive filemanager · CWE-22 | Kritik9,8 | — | %1,0 | 25 Tem 2022 |
38İzleyin | CVE-2022-46604Kavram kanıtı | An issue in Tecrail Responsive FileManager v9.9.5 and below allows attackers to bypass the file extension check mechanism and upload a crafttecrail · responsive filemanager · CWE-434 | Yüksek8,8 | — | %8,6 | 2 Şub 2023 |
34İzleyin | CVE-2018-18867İstismar yok | An SSRF issue was discovered in tecrail Responsive FileManager 9.13.4 via the upload.php url parameter.tecrail · responsive filemanager · CWE-918 | Yüksek8,6 | — | %1,5 | 31 Eki 2018 |
31İzleyin | CVE-2018-20793İstismar yok | tecrail Responsive FileManager 9.13.4 allows remote attackers to write to an arbitrary file as a consequence of a paths[0] path traversal mitecrail · responsive filemanager · CWE-22 | Yüksek7,5 | — | %5,0 | 25 Şub 2019 |
31İzleyin | CVE-2018-20794İstismar yok | tecrail Responsive FileManager 9.13.4 allows remote attackers to write to an arbitrary image file (jpg/jpeg/png) via path traversal with thetecrail · responsive filemanager · CWE-22 | Yüksek7,5 | — | %4,0 | 25 Şub 2019 |
31İzleyin | CVE-2018-20790İstismar yok | tecrail Responsive FileManager 9.13.4 allows remote attackers to delete an arbitrary file as a consequence of a paths[0] path traversal mititecrail · responsive filemanager · CWE-22 | Yüksek7,5 | — | %3,6 | 25 Şub 2019 |
31İzleyin | CVE-2018-20789İstismar yok | tecrail Responsive FileManager 9.13.4 allows remote attackers to delete an arbitrary directory as a consequence of a paths[0] path traversaltecrail · responsive filemanager · CWE-22 | Yüksek7,5 | — | %3,6 | 25 Şub 2019 |
31İzleyin | CVE-2018-20792İstismar yok | tecrail Responsive FileManager 9.13.4 allows remote attackers to read arbitrary file via path traversal with the path parameter, through thetecrail · responsive filemanager · CWE-22 | Yüksek7,5 | — | %3,5 | 25 Şub 2019 |
31İzleyin | CVE-2018-20795İstismar yok | tecrail Responsive FileManager 9.13.4 allows remote attackers to read arbitrary files via path traversal with the path parameter, through thtecrail · responsive filemanager · CWE-22 | Yüksek7,5 | — | %3,5 | 25 Şub 2019 |
31İzleyin | CVE-2018-15495İstismar yok | /filemanager/upload.php in Responsive FileManager before 9.13.3 allows Directory Traversal and SSRF because the url parameter is used directtecrail · responsive filemanager · CWE-22 | Yüksek7,5 | — | %2,4 | 17 Ağu 2018 |
30İzleyin | CVE-2018-18061İstismar yok | An issue was discovered in dialog.php in tecrail Responsive FileManager 9.8.1.tecrail · responsive filemanager · CWE-287 | Yüksek7,5 | — | %0,9 | 10 Eki 2018 |
24İzleyin | CVE-2018-15536Kavram kanıtı | /filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 does not properly validate file paths in archives, allowing for tecrail · responsive filemanager · CWE-22 | Orta5,5 | — | %6,4 | 24 Ağu 2018 |
24İzleyin | CVE-2020-11106İstismar yok | An issue was discovered in Responsive Filemanager through 9.14.0.tecrail · responsive filemanager · CWE-79 | Orta6,1 | — | %0,9 | 30 Mar 2020 |
24İzleyin | CVE-2018-20791İstismar yok | tecrail Responsive FileManager 9.13.4 allows XSS via a media file upload with an XSS payload in the name, because of mishandling of the meditecrail · responsive filemanager · CWE-79 | Orta6,1 | — | %0,8 | 25 Şub 2019 |
24İzleyin | CVE-2018-18062İstismar yok | An issue was discovered in dialog.php in tecrail Responsive FileManager 9.8.1.tecrail · responsive filemanager · CWE-79 | Orta6,1 | — | %0,8 | 10 Eki 2018 |
- CVE-2018-1472862Bu hafta
upload.php in Responsive FileManager 9.13.1 allows SSRF via the url parameter.
KritikCVSS 9,8Kavram kanıtıEPSS %77tecrail · responsive filemanager3 Ağu 2018
- CVE-2020-1056745Planlayın
An issue was discovered in Responsive Filemanager through 9.14.0.
KritikCVSS 9,8Kavram kanıtıEPSS %20tecrail · responsive filemanager14 Mar 2020
- CVE-2018-1553544Planlayın
/filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 uses external input to construct a pathname that should be withi
YüksekCVSS 7,5Kavram kanıtıEPSS %45tecrail · responsive filemanager24 Ağu 2018
- CVE-2022-4427640Planlayın
In Responsive Filemanager < 9.12.0, an attacker can bypass upload restrictions resulting in RCE.
KritikCVSS 9,8Kavram kanıtıEPSS %2tecrail · responsive filemanager28 Haz 2023
- CVE-2020-1021239İzleyin
upload.php in Responsive FileManager 9.13.4 and 9.14.0 allows SSRF via the url parameter because file-extension blocking is mishandled and b
KritikCVSS 9,8İstismar yokEPSS %1tecrail · responsive filemanager6 Mar 2020
- CVE-2017-2014539İzleyin
Tecrail Responsive Filemanger path traversal
KritikCVSS 9,8İstismar yokEPSS %1tecrail · responsive filemanager25 Tem 2022
- CVE-2022-4660438İzleyin
An issue in Tecrail Responsive FileManager v9.9.5 and below allows attackers to bypass the file extension check mechanism and upload a craft
YüksekCVSS 8,8Kavram kanıtıEPSS %9tecrail · responsive filemanager2 Şub 2023
- CVE-2018-1886734İzleyin
An SSRF issue was discovered in tecrail Responsive FileManager 9.13.4 via the upload.php url parameter.
YüksekCVSS 8,6İstismar yokEPSS %2tecrail · responsive filemanager31 Eki 2018
- CVE-2018-2079331İzleyin
tecrail Responsive FileManager 9.13.4 allows remote attackers to write to an arbitrary file as a consequence of a paths[0] path traversal mi
YüksekCVSS 7,5İstismar yokEPSS %5tecrail · responsive filemanager25 Şub 2019
- CVE-2018-2079431İzleyin
tecrail Responsive FileManager 9.13.4 allows remote attackers to write to an arbitrary image file (jpg/jpeg/png) via path traversal with the
YüksekCVSS 7,5İstismar yokEPSS %4tecrail · responsive filemanager25 Şub 2019
- CVE-2018-2079031İzleyin
tecrail Responsive FileManager 9.13.4 allows remote attackers to delete an arbitrary file as a consequence of a paths[0] path traversal miti
YüksekCVSS 7,5İstismar yokEPSS %4tecrail · responsive filemanager25 Şub 2019
- CVE-2018-2078931İzleyin
tecrail Responsive FileManager 9.13.4 allows remote attackers to delete an arbitrary directory as a consequence of a paths[0] path traversal
YüksekCVSS 7,5İstismar yokEPSS %4tecrail · responsive filemanager25 Şub 2019
- CVE-2018-2079231İzleyin
tecrail Responsive FileManager 9.13.4 allows remote attackers to read arbitrary file via path traversal with the path parameter, through the
YüksekCVSS 7,5İstismar yokEPSS %3tecrail · responsive filemanager25 Şub 2019
- CVE-2018-2079531İzleyin
tecrail Responsive FileManager 9.13.4 allows remote attackers to read arbitrary files via path traversal with the path parameter, through th
YüksekCVSS 7,5İstismar yokEPSS %3tecrail · responsive filemanager25 Şub 2019
- CVE-2018-1549531İzleyin
/filemanager/upload.php in Responsive FileManager before 9.13.3 allows Directory Traversal and SSRF because the url parameter is used direct
YüksekCVSS 7,5İstismar yokEPSS %2tecrail · responsive filemanager17 Ağu 2018
- CVE-2018-1806130İzleyin
An issue was discovered in dialog.php in tecrail Responsive FileManager 9.8.1.
YüksekCVSS 7,5İstismar yokEPSS %1tecrail · responsive filemanager10 Eki 2018
- CVE-2018-1553624İzleyin
/filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 does not properly validate file paths in archives, allowing for
OrtaCVSS 5,5Kavram kanıtıEPSS %6tecrail · responsive filemanager24 Ağu 2018
- CVE-2020-1110624İzleyin
An issue was discovered in Responsive Filemanager through 9.14.0.
OrtaCVSS 6,1İstismar yokEPSS %1tecrail · responsive filemanager30 Mar 2020
- CVE-2018-2079124İzleyin
tecrail Responsive FileManager 9.13.4 allows XSS via a media file upload with an XSS payload in the name, because of mishandling of the medi
OrtaCVSS 6,1İstismar yokEPSS %1tecrail · responsive filemanager25 Şub 2019
- CVE-2018-1806224İzleyin
An issue was discovered in dialog.php in tecrail Responsive FileManager 9.8.1.
OrtaCVSS 6,1İstismar yokEPSS %1tecrail · responsive filemanager10 Eki 2018