CVE-2018-16966

There is a CSRF vulnerability in the mndpsingh287 File Manager plugin 3.0 for WordPress via the page=wp_file_manager_root public_path parameter.
Configurations

Configuration 1 (hide)

cpe:2.3:a:filemanagerpro:file_manager:3.0:*:*:*:*:wordpress:*:*

History

18 Oct 2024, 12:19

Type Values Removed Values Added
CPE cpe:2.3:a:webdesi9:file_manager:3.0:*:*:*:*:wordpress:*:* cpe:2.3:a:filemanagerpro:file_manager:3.0:*:*:*:*:wordpress:*:*
First Time Filemanagerpro
Filemanagerpro file Manager

26 May 2023, 17:54

Type Values Removed Values Added
CPE cpe:2.3:a:file_manager_project:file_manager:3.0:*:*:*:*:wordpress:*:* cpe:2.3:a:webdesi9:file_manager:3.0:*:*:*:*:wordpress:*:*

Information

Published : 2019-04-15 21:29

Updated : 2024-10-18 12:19


NVD link : CVE-2018-16966

Mitre link : CVE-2018-16966

CVE.ORG link : CVE-2018-16966


JSON object : View

Products Affected

filemanagerpro

  • file_manager
CWE
CWE-352

Cross-Site Request Forgery (CSRF)