In Tiny File Manager 2.4.1, there is a Path Traversal vulnerability in the ajax recursive directory listing functionality. This allows authenticated users to enumerate directories and files on the filesystem (outside of the application scope).
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-04-28T21:01:16

Updated: 2024-05-14T20:07:57.842023

Reserved: 2020-04-23T00:00:00


Link: CVE-2020-12102

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2020-04-28T21:15:11.773

Modified: 2024-05-14T20:15:09.087


Link: CVE-2020-12102

JSON object: View

cve-icon Redhat Information

No data.

CWE