Skip to main content

Vendor archive

onedotoh CVEs

Beta · best-effort

3 CVEs tagged to vendor onedotoh0 Critical, 1 High, 1 Medium, 1 Low, 0 Unrated.

CVE-2006-6376

Published Dec 7, 2006

Multiple directory traversal vulnerabilities in fm.php in Simple File Manager (SFM) 0.24a allow remote attackers to use ".." sequences to (1) read arbitrary files via the filename…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-3160

Published Jun 22, 2006

Cross-site scripting (XSS) vulnerability in fm.php in ONEdotOH Simple File Manager (SFM) 0.24a and earlier allows remote attackers to inject arbitrary web script or HTML via the m…

CVSS 2.6 · Low
Vendor/product tagsBeta · best-effort

CVE-2003-1539

Published Dec 31, 2003

Cross-site scripting (XSS) vulnerability in ONEdotOH Simple File Manager (SFM) before 0.21 allows remote attackers to inject arbitrary web script or HTML via (1) file names and (2…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1