elFinder < 2.1.62 - Path Traversal vulnerability in PHP LocalVolumeDriver connector
CVE-2023-35840 elFinder < 2162 - Path Traversal vulnerability in PHP LocalVolumeDriver connector Description Path Traversal vulnerability in PHP LocalVolumeDriver connector This vulnerability can be exploited by allowing untrusted users to write to the local file system Vulnerability exists in target parameter which contains a base64 encoded path For exmpample path