A path traversal vulnerability in the file upload functionality in tinyfilemanager.php in Tiny File Manager before 2.4.7 allows remote attackers (with valid user accounts) to upload malicious PHP files to the webroot, leading to code execution.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2022-03-15T11:13:26

Updated: 2022-03-20T02:27:56

Reserved: 2021-12-13T00:00:00


Link: CVE-2021-45010

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2022-03-15T12:15:08.380

Modified: 2022-03-21T18:56:55.743


Link: CVE-2021-45010

JSON object: View

cve-icon Redhat Information

No data.

CWE