Unspecified vulnerability in Frontend Filemanager (air_filemanager) 0.6.1 and earlier extension for TYPO3 allows remote attackers to execute arbitrary commands via unknown vectors.
📦
air_filemanager
Vendor: typo3
Actively Exploited
0
CISA KEV List
PoC / Exploits
0
Code Available
Total RCEs
2
Remote Access
Total CVEs
4
Total Indexed
Avg. EPSS
1.52%
Exploit Prob.
Security Vulnerability Index
Page 1 / 1
7.5
CVSS
CVE-2008-6685
RCE
Severity: HIGH
4.3
CVSS
Cross-site scripting (XSS) vulnerability in the air_filemanager 0.6.0 and earlier extension for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Severity: MEDIUM
10.0
CVSS
CVE-2008-2345
RCE
Unspecified vulnerability in the air_filemanager 0.6.0 and earlier extension for TYPO3 allows remote attackers to execute arbitrary PHP code via unspecified vectors related to "insufficient file filtering."
Severity: HIGH