Products: 1
    Vulnerabilities: 21
    Known Exploited: 0
    4
    Critical Level Threats
    11
    High Level Threats
    5
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-5482

    Remote Code Execution via Unrestricted File Upload in Responsive FileManager

    Last Modified: Jun 15, 2026
    Published: Jun 15, 2026

    CVE-2022-44276

    In Responsive Filemanager < 9.12.0, an attacker can bypass upload restrictions resulting in RCE.

    Last Modified: Dec 05, 2024
    Published: Jun 28, 2023

    CVE-2022-46604

    An issue in Tecrail Responsive FileManager v9.9.5 and below allows attackers to bypass the file extension check mechanism and upload a crafted PHP file, leading to arbitrary code execution.

    Last Modified: Mar 27, 2025
    Published: Feb 02, 2023

    CVE-2017-20145

    Tecrail Responsive Filemanger path traversal

    Last Modified: Apr 15, 2025
    Published: Jul 25, 2022

    CVE-2020-11106

    An issue was discovered in Responsive Filemanager through 9.14.0. In the dialog.php page, the session variable $_SESSION['RF']["view_type"] wasn't sanitized if it was already set. This made stored XSS possible if one opens ajax_calls.php and uses the "view" action and places a payload in the type parameter, and then returns to the dialog.php page. This occurs because ajax_calls.php was also able to set the $_SESSION['RF']["view_type"] variable, but there it wasn't sanitized.

    Last Modified: Nov 21, 2024
    Published: Mar 30, 2020
    Items Per Page
    Tecrail Vulnerabilities & Security CVEs | CVE-DB