Vulnerabilities > CVE-2018-14728 - Server-Side Request Forgery (SSRF) vulnerability in Tecrail Responsive Filemanager 9.13.1
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
upload.php in Responsive FileManager 9.13.1 allows SSRF via the url parameter.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Common Weakness Enumeration (CWE)
Exploit-Db
file | exploits/linux/webapps/45103.txt |
id | EDB-ID:45103 |
last seen | 2018-11-30 |
modified | 2018-07-30 |
platform | linux |
port | |
published | 2018-07-30 |
reporter | Exploit-DB |
source | https://www.exploit-db.com/download/45103 |
title | Responsive Filemanager 9.13.1 - Server-Side Request Forgery |
type | webapps |
Packetstorm
data source | https://packetstormsecurity.com/files/download/148742/responsivefm9131-ssrf.txt |
id | PACKETSTORM:148742 |
last seen | 2018-07-31 |
published | 2018-07-29 |
reporter | Guia Brahim Fouad |
source | https://packetstormsecurity.com/files/148742/Responsive-Filemanager-9.13.1-Server-Side-Request-Forgery.html |
title | Responsive Filemanager 9.13.1 Server-Side Request Forgery |