Filemanager is vulnerable to Relative Path Traversal through filemanager.php
Moderate severity
GitHub Reviewed
Published
Jul 18, 2025
to the GitHub Advisory Database
•
Updated Jul 20, 2025
Description
Published by the National Vulnerability Database
Jul 18, 2025
Published to the GitHub Advisory Database
Jul 18, 2025
Reviewed
Jul 20, 2025
Last updated
Jul 20, 2025
An issue in Filemanager v2.5.0 and below allows attackers to execute a directory traversal via sending a crafted HTTP request to the filemanager.php endpoint.
References