Showing 1 vulnerability on this page for smanga

Signals CISA KEV Ransomware Nuclei
smanga vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

lkw199711 smanga Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

smanga 3.2.7 does not filter the file parameter at the PHP/get file flow.php interface, resulting in a path traversal vulnerability that can cause arbitrary file reading.

CWE-22May 20, 2024
CVSS7.5v3.1EPSS0.623%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX