Vulnerabilities > Libra File Manager > PHP Filemanager > 1.00

DATE CVE VULNERABILITY TITLE RISK
2008-09-29 CVE-2008-4319 Improper Authentication vulnerability in Libra File Manager PHP Filemanager
fileadmin.php in Libra File Manager (aka Libra PHP File Manager) 1.18 and earlier allows remote attackers to bypass authentication, and read arbitrary files, modify arbitrary files, and list arbitrary directories, by inserting certain user and isadmin parameters in the query string.
network
low complexity
libra-file-manager CWE-287
6.4