vendor:
Owlfiles File Manager
by:
Chokri Hammedi
7.5
CVSS
HIGH
Path Traversal, Local File Inclusion (LFI)
22, 98
CWE
Product Name: Owlfiles File Manager
Affected Version From: 12.0.1
Affected Version To: 12.0.1
Patch Exists: NO
Related CWE:
CPE: a:owlfiles_file_manager:12.0.1
Platforms Tested: iPhone iOS 16.0
2022
Owlfiles File Manager 12.0.1 – Multiple Vulnerabilities
The Owlfiles File Manager 12.0.1 is vulnerable to path traversal and local file inclusion vulnerabilities. An attacker can exploit these vulnerabilities to access sensitive files and directories on the server.
Mitigation:
The vendor has not provided a patch or mitigation for these vulnerabilities. It is recommended to avoid using the Owlfiles File Manager 12.0.1 or to apply additional security measures to protect sensitive files and directories on the server.