VendorsOnedotohsimple_file_managerany version
Vulnerabilities

Onedotoh Simple File Manager any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2003-1539
Cross-site scripting (XSS) vulnerability in ONEdotOH Simple File Manager (SFM) before 0.21 allows remote attackers to inject arbitrary web script or HTML via (1) file names and (2) directory names.
Published 2008-01-10 · Modified
4.3EPSS 0.011
CVE-2006-3160
Cross-site scripting (XSS) vulnerability in fm.php in ONEdotOH Simple File Manager (SFM) 0.24a and earlier allows remote attackers to inject arbitrary web script or HTML via the msg parameter.
Published 2006-06-22 · Modified
2.6EPSS 0.013