Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Vittawat Masaree

Researcher fromSnoopBees Lab
#14225of 53,635
18.9Total CVSS
Vulnerabilities · 2
Critical
2
PT-2019-10103
9.1
2019-03-18
Kcfinder · Roxy Fileman · CVE-2018-20525
Name of the Vulnerable Software and Affected Versions: Roxy Fileman version 1.4.5 Description: The issue allows Directory Traversal in certain PHP files, specifically copydir.php, copyfile.php, and fileslist.php. Recommendations: For Roxy Fileman version 1.4.5, consider restricting access to the vulnerable PHP files copydir.php, copyfile.php, and fileslist.php until a patch is available.
PT-2019-10104
9.8
2019-03-18
Kcfinder · Roxy Fileman · CVE-2018-20526
Name of the Vulnerable Software and Affected Versions: Roxy Fileman version 1.4.5 Description: The issue allows for unrestricted file upload in the `upload.php` file. Recommendations: For version 1.4.5, restrict access to the `upload.php` file to prevent unauthorized file uploads until a fix is available.