CVE-2022-46604
HIGH 8.8EPSS 8.6%
An issue in Tecrail Responsive FileManager v9.9.5 and below allows attackers to bypass the file extension check mechanism and upload a crafted PHP file, leading to arbitrary code execution.
- CVSS v3.1
- 8.8 HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - CVSS v3.1
- 8.8 HIGH
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H - EPSS
- 8.63% chance of exploitation in the next 30 days, 95th percentile
- Published
- 2023-02-02
- Updated
- 2025-03-27
Proof-of-concept exploits (2)
- CyberQuestor-infosec/CVE-2022-46604-Responsive-File-Manager1★ · 2025-06-12
- galoget/ResponsiveFileManager-CVE-2022-466047★ · 2023-04-09