Sourceforge Vulnerabilities and Affected Products
Vulnerabilities associated with phpFileManager.
Products
Clear product- 202CMS2 vulnerabilities
- Data Center Audit2 vulnerabilities
- Easyndexer2 vulnerabilities
- Echo Mirage1 vulnerability
- GPS Tracking System1 vulnerability
- Meneame English Pligg1 vulnerability
- OpenBiz Cubi Lite1 vulnerability
- phpFileManager1 vulnerability
- Placeto CMS1 vulnerability
- SimplePress CMS1 vulnerability
- Snes9K 0.0.9z1 vulnerability
- SoX - Sound eXchange1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2019-25632MEDIUM | phpFileManager 1.7.8 Local File Inclusion via index.phpphpFileManager 1.7.8 contains a local file inclusion vulnerability that allows unauthenticated attackers to read arbitrary files by manipulating the action, fm_current_dir, and filename parameters. Attackers can send GET requests to index.php with crafted parameter values to access sensitive files like /etc/passwd from the server. CWE-306Mar 24, 2026 | CVSS6.9v4.0 | EPSS0.557% | PoCs1 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |