Medium severity6.1OSV Advisory· Published Feb 25, 2019· Updated Jun 17, 2026
CVE-2018-20791
CVE-2018-20791
Description
tecrail Responsive FileManager 9.13.4 allows XSS via a media file upload with an XSS payload in the name, because of mishandling of the media_preview action.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: 9.9, 9.9.1, 9.9.2, …
cpe:2.3:a:tecrail:responsive_filemanager:9.13.4:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:tecrail:responsive_filemanager:9.13.4:*:*:*:*:*:*:*
- (no CPE)range: = 9.13.4
Patches
Vulnerability mechanics
References
1- www.exploit-db.com/exploits/45987nvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.