vendor:
Responsive FileManager
by:
SunCSR (Sun* Cyber Security Research)
8.8
CVSS
HIGH
Path Traversal
22
CWE
Product Name: Responsive FileManager
Affected Version From: < 9.13.4
Affected Version To: < 9.13.4
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: Linux 64bit + Python3
2018 (PoC) and 2020 (Auto Exploit)
Responsive FileManager 9.13.4 – ‘path’ Path Traversal
Responsive FileManager 9.13.4 is vulnerable to Path Traversal. An attacker can exploit this vulnerability to read arbitrary files from the server. This vulnerability is due to insufficient sanitization of user-supplied input in the 'path' parameter of the 'ajax_calls.php' script. An attacker can exploit this vulnerability by sending a crafted HTTP request containing directory traversal sequences (e.g., '../') to the vulnerable script. Successful exploitation of this vulnerability will allow an attacker to read arbitrary files from the server.
Mitigation:
The vendor has released a patch to address this vulnerability. Users are advised to upgrade to the latest version of the software.