mirror of
https://github.com/prasathmani/tinyfilemanager.git
synced 2026-04-26 19:05:54 +03:00
[GH-ISSUE #357] security breaches in tiny file manager #260
Labels
No labels
Feature
Feature
Is It Really an Issue?
Need More Info
Request
Security
bug
duplicate
enhancement
enhancement
help wanted
invalid
pull-request
question
suggestion
wontfix
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
starred/tinyfilemanager#260
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @peefour on GitHub (May 11, 2020).
Original GitHub issue: https://github.com/prasathmani/tinyfilemanager/issues/357
hi,
are you aware of this?
https://www.quantumleap.it/tiny-file-manager-path-traversal-recursive-directory-listing-and-absolute-path-file-backup-copy/
see also other mentions:
https://www.google.com/search?newwindow=1&sxsrf=ALeKk0025t2B-Upsat5D1t8HcK2-iLWyTw%3A1582747077534&ei=xc1WXs2dIMSYkwWvyqGICQ&q=tiny%20file%20manager%20vulnerabilities
@si458 commented on GitHub (May 14, 2020):
i concur this issue
it is affected and the vulnerability does work and expose stuff it shouldnt do...
awaiting a fix
@prasathmani commented on GitHub (May 18, 2020):
@peefour, issue has been fixed now, kindly close the open CVEID.
@peefour commented on GitHub (May 19, 2020):
thank you! what is cveid?
Peefy - Chat @ Spike [ikp6a]
On May 18, 2020 at 8:09 GMT, Prasath Mani notifications@github.com wrote:
@peefour, issue has been fixed now, kindly close the open CVEID.
—
You are receiving this because you were mentioned.
Reply to this email directly, view it on GitHub, or unsubscribe.