Tecrail
20 known vulnerabilities
Top Products
In Responsive Filemanager < 9.12.0, an attacker can bypass upload restrictions resulting in RCE.
An issue in Tecrail Responsive FileManager v9.9.5 and below allows attackers to bypass the file extension check mechanis
A vulnerability was found in Tecrail Responsive Filemanger up to 9.10.x and classified as critical. The manipulation lea
An issue was discovered in Responsive Filemanager through 9.14.0. In the dialog.php page, the session variable $_SESSION
An issue was discovered in Responsive Filemanager through 9.14.0. In the ajax_calls.php file in the save_img action in t
upload.php in Responsive FileManager 9.13.4 and 9.14.0 allows SSRF via the url parameter because file-extension blocking
tecrail Responsive FileManager 9.13.4 allows remote attackers to read arbitrary files via path traversal with the path p
tecrail Responsive FileManager 9.13.4 allows remote attackers to write to an arbitrary image file (jpg/jpeg/png) via pat
tecrail Responsive FileManager 9.13.4 allows remote attackers to write to an arbitrary file as a consequence of a paths[
tecrail Responsive FileManager 9.13.4 allows remote attackers to read arbitrary file via path traversal with the path pa
tecrail Responsive FileManager 9.13.4 allows XSS via a media file upload with an XSS payload in the name, because of mis
tecrail Responsive FileManager 9.13.4 allows remote attackers to delete an arbitrary file as a consequence of a paths[0]
tecrail Responsive FileManager 9.13.4 allows remote attackers to delete an arbitrary directory as a consequence of a pat
An SSRF issue was discovered in tecrail Responsive FileManager 9.13.4 via the upload.php url parameter. NOTE: this issue
An issue was discovered in dialog.php in tecrail Responsive FileManager 9.8.1. A reflected XSS vulnerability allows remo
An issue was discovered in dialog.php in tecrail Responsive FileManager 9.8.1. Attackers can access the file manager int
/filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 does not properly validate file paths in arc
/filemanager/ajax_calls.php in tecrail Responsive FileManager before 9.13.4 uses external input to construct a pathname
/filemanager/upload.php in Responsive FileManager before 9.13.3 allows Directory Traversal and SSRF because the url para
upload.php in Responsive FileManager 9.13.1 allows SSRF via the url parameter.
Frequently Asked Questions
How many CVEs affect Tecrail?
Tecrail has 20 CVE records in our database, including 4 critical and 11 high severity vulnerabilities.
What are the most severe Tecrail vulnerabilities?
Tecrail has 4 critical severity (CVSS 9.0+) and 11 high severity (CVSS 7.0-8.9) vulnerabilities. Review the list above sorted by publication date to find the most recent high-severity issues.
How can I scan for Tecrail vulnerabilities?
CyberStrike's AI-powered security agents automatically detect vulnerabilities in Tecrail products across your infrastructure. The platform provides continuous pentesting, DAST scanning, and real-time vulnerability monitoring with actionable remediation guidance.
Detect Tecrail Vulnerabilities
CyberStrike scans your infrastructure for Tecrail vulnerabilities and provides real-time remediation guidance.
Get Started