← Back

CVE-2022-23044

nvd nist
Published: Nov 25, 2022Modified: Dec 31, 2025

JSON object

Loading...
8.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 2.8 / Impact: 5.9
Source: NVD

Description

Tiny File Manager version 2.4.8 allows an unauthenticated remote attacker to persuade users to perform unintended actions within the application. This is possible because the application is vulnerable to CSRF.

Affected (1)

1 product
Tiny File Manager
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 2.4.8

References (4)

Source: help@fluidattacks.com
ExploitThird Party Advisory
Source: help@fluidattacks.com
ExploitIssue TrackingThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitIssue TrackingThird Party Advisory

Timeline

No history available yet.