In Tiny File Manager prior to 2.3.9, there is a remote code execution via Upload from URL and Edit/Rename files. Only authenticated users are impacted.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
tiny file manager project tiny file manager |