CVE-2022-23044

Severity CVSS v4.0:
Pending analysis
Type:
CWE-352 Cross-Site Request Forgery (CSRF)
Publication date:
25/11/2022
Last modified:
31/12/2025

Description

Tiny File Manager version 2.4.8 allows an unauthenticated remote attacker to persuade users to perform unintended actions within the application. This is possible because the application is vulnerable to CSRF.<br /> <br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:prasathmani:tiny_file_manager:2.4.8:*:*:*:*:*:*:*