PoC Index

CVE-2022-46604

HIGH 8.8EPSS 8.6%

An issue in Tecrail Responsive FileManager v9.9.5 and below allows attackers to bypass the file extension check mechanism and upload a crafted PHP file, leading to arbitrary code execution.

CVSS v3.1
8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS v3.1
8.8 HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
EPSS
8.63% chance of exploitation in the next 30 days, 95th percentile
Published
2023-02-02
Updated
2025-03-27

Proof-of-concept exploits (2)

ExploitDB entries (1)

References

Related