Medium
CVSS 5.0
Overview
Directory traversal vulnerability in plugins/file.php in phpWebFileManager before 0.4.4 allows remote attackers to read arbitrary files via a .. (dot dot) in the fm_path parameter.
Directory traversal vulnerability in plugins/file.php in phpWebFileManager befor...
Directory traversal vulnerability in plugins/file.php in phpWebFileManager before 0.4.4 allows remote attackers to read arbitrary files via a .. (dot dot) in the fm_path parameter.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: