header-logo
Suggest Exploit
vendor:
Laravel File Manager
by:
Mohammad Danish
7.5
CVSS
HIGH
Arbitrary File Upload
264
CWE
Product Name: Laravel File Manager
Affected Version From: v2.0.0-alpha7
Affected Version To: v.2.0
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Platforms Tested: N/A
2020

UniSharp Laravel File Manager – Arbitrary File Upload

UniSharp Laravel File Manager allows Arbitrary File Upload if type is set to Files /laravel-filemanager?type=Files

Mitigation:

Update to the latest version of UniSharp Laravel File Manager
Source

Exploit-DB raw data: