VYPR

PHP Filemanager

by Libra File Manager

CVEs (2)

  • CVE-2008-7027Aug 21, 2009
    risk 0.03cvss epss 0.01

    Libra File Manager 1.18 and earlier allows remote attackers to bypass authentication and gain privileges by setting the user and pass cookies to 1.

  • CVE-2008-4319Sep 29, 2008
    risk 0.03cvss epss 0.03

    fileadmin.php in Libra File Manager (aka Libra PHP File Manager) 1.18 and earlier allows remote attackers to bypass authentication, and read arbitrary files, modify arbitrary files, and list arbitrary directories, by inserting certain user and isadmin parameters in the query string.