[GH-ISSUE #1221] EXPLOIT - DO NOT use on WINDOWS SERVER #781

Open
opened 2026-03-02 16:01:24 +03:00 by kerem · 0 comments
Owner

Originally created by @id64350970 on GitHub (Aug 20, 2024).
Original GitHub issue: https://github.com/prasathmani/tinyfilemanager/issues/1221

There is an active exploit affecting Windows allowing to bypass restrictions and to view files, including .PHP with the passwords hashes. An advisory has been open but they do not seems interested to solve this problem quickly.

Originally created by @id64350970 on GitHub (Aug 20, 2024). Original GitHub issue: https://github.com/prasathmani/tinyfilemanager/issues/1221 There is an active exploit affecting **Windows** allowing to bypass restrictions and to view files, including _.PHP_ with the passwords hashes. An advisory has been open but they do not seems interested to solve this problem quickly.
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference
starred/tinyfilemanager#781
No description provided.