Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
file browser vulnerabilities and exploits
(subscribe to this query)
5.3
CVSSv3
CVE-2018-16549
HScripts PHP File Browser Script v1.0 allows Directory Traversal via the index.php path parameter.
Php File Browser Script Project Php File Browser Script 1.0
NA
CVE-2007-4921
PHP remote file inclusion vulnerability in _includes/settings.inc.php in Ajax File Browser 3 Beta allows remote malicious users to execute arbitrary PHP code via a URL in the approot parameter.
Ajax File Browser 3 Beta
1 EDB exploit
NA
CVE-2011-4831
Directory traversal vulnerability in webFileBrowser.php in Web File Browser 0.4b14 allows remote authenticated users to read arbitrary files via a ..%2f (encoded dot dot) in the file parameter in a download action.
David Azoulay Web File Browser 0.4b14
1 EDB exploit
NA
CVE-2004-2287
Directory traversal vulnerability in explorer.php in DSM Light Web File Browser 2.0 allows remote malicious users to read arbitrary files via .. (dot dot) in the wdir parameter.
Dsm Light Web File Browser 2.0
1 EDB exploit
2.5
CVSSv3
CVE-2018-25030
A vulnerability classified as problematic has been found in Mirmay Secure Private Browser and File Manager up to 2.5. Affected is the Auto Lock. A race condition leads to a local authentication bypass. The exploit has been disclosed to the public and may be used.
Mirmay File Manager
Mirmay Secure Private Browser
NA
CVE-2008-5680
Multiple buffer overflows in Opera prior to 9.63 might allow (1) remote malicious users to execute arbitrary code via a crafted text area, or allow (2) user-assisted remote malicious users to execute arbitrary code via a long host name in a file: URL. NOTE: this might overlap CVE...
Opera Opera Browser 9.25
Opera Opera Browser 9.24
Opera Opera Browser 9.10
Opera Opera Browser 9.02
Opera Opera Browser 8.54
Opera Opera Browser 8.01
Opera Opera Browser 7.54
Opera Opera Browser 7.50
Opera Opera Browser 7.53
Opera Opera Browser 7.0
Opera Opera Browser 6.0
Opera Opera Browser 6.03
Opera Opera Browser 6.02
Opera Opera Browser 5.0
Opera Opera Browser 5.10
Opera Opera Browser 9.50
Opera Opera Browser 9.21
Opera Opera Browser 9.20
Opera Opera Browser 9.0
Opera Opera Browser 8.0
Opera Opera Browser 8.02
Opera Opera Browser 8.50
1 EDB exploit
NA
CVE-2011-2633
Unspecified vulnerability in Opera prior to 11.11 allows remote malicious users to cause a denial of service (application crash) via vectors involving a Certificate Revocation List (CRL) file, as demonstrated by the multicert-ca-02.crl file.
Opera Opera Browser 9.64
Opera Opera Browser 9.63
Opera Opera Browser 5.0
Opera Opera Browser 6.0
Opera Opera Browser 9.26
Opera Opera Browser 9.24
Opera Opera Browser 9.50
Opera Opera Browser 9.51
Opera Opera Browser 10.52
Opera Opera Browser 10.00
Opera Opera Browser 8.0
Opera Opera Browser 7.54
Opera Opera Browser 7.20
Opera Opera Browser 7.21
Opera Opera Browser 7.10
Opera Opera Browser 7.0
Opera Opera Browser 7.60
Opera Opera Browser 8.51
Opera Opera Browser 6.06
Opera Opera Browser 9.01
Opera Opera Browser 10.53
Opera Opera Browser 6.1
NA
CVE-2011-2639
Opera prior to 11.10 does not properly handle hidden animated GIF images, which allows remote malicious users to cause a denial of service (CPU consumption) via an image file that triggers continual repaints.
Opera Opera Browser 9.61
Opera Opera Browser 9.62
Opera Opera Browser 6.0
Opera Opera Browser 9.23
Opera Opera Browser 10.50
Opera Opera Browser 10.00
Opera Opera Browser 10.10
Opera Opera Browser 7.52
Opera Opera Browser 7.51
Opera Opera Browser 7.50
Opera Opera Browser 9.10
Opera Opera Browser 7.23
Opera Opera Browser 7.20
Opera Opera Browser 7.0
Opera Opera Browser 8.01
Opera Opera Browser 6.03
Opera Opera Browser 6.02
Opera Opera Browser 5.11
Opera Opera Browser 9.20
Opera Opera Browser 6.1
Opera Opera Browser 9.12
Opera Opera Browser 6.12
NA
CVE-2008-1080
Opera prior to 9.26 allows user-assisted remote malicious users to read arbitrary files by tricking a user into typing the characters of the target filename into a file input.
Opera Opera Browser 9.01
Opera Opera Browser 9.0
Opera Opera Browser 7.52
Opera Opera Browser 7.51
Opera Opera Browser 7.50
Opera Opera Browser 7.20
Opera Opera Browser 7.01
Opera Opera Browser 7.60
Opera Opera Browser 7.02
Opera Opera Browser 7.0
Opera Opera Browser 6.02
Opera Opera Browser 6.0
Opera Opera Browser 6.1
Opera Opera Browser 6.12
Opera Opera Browser 5.02
Opera Opera Browser 4.00
Opera Opera Browser 4.02
Opera Opera Browser 4.01
Opera Opera Browser 3.00
Opera Opera Browser 2.12
Opera Opera Browser 2.10
Opera Opera Browser 9.23
NA
CVE-2010-2658
Opera prior to 10.60 does not properly restrict certain interaction between plug-ins, file inputs, and the clipboard, which allows user-assisted remote malicious users to trigger the uploading of arbitrary files via a crafted web site.
Opera Opera Browser 10.53
Opera Opera Browser 10.10
Opera Opera Browser 9.63
Opera Opera Browser 9.62
Opera Opera Browser 9.61
Opera Opera Browser 9.50
Opera Opera Browser 9.23
Opera Opera Browser 9.22
Opera Opera Browser 9.20
Opera Opera Browser 10.52
Opera Opera Browser 10.01
Opera Opera Browser 10.00
Opera Opera Browser 9.60
Opera Opera Browser 9.26
Opera Opera Browser 9.27
Opera Opera Browser 9.10
Opera Opera Browser 9.12
Opera Opera Browser 8.51
Opera Opera Browser 8.53
Opera Opera Browser 8.01
Opera Opera Browser 8.02
Opera Opera Browser 7.20
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
NULL pointer dereference
CVE-2023-52689
CVE-2024-23803
client side
CVE-2023-52696
information disclosure
CVE-2024-35843
CVE-2024-27130
CVE-2023-52697
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »