Vulnerabilities (CVE)

Filtered by vendor Alexey Sukhotin Subscribe
Filtered by product Elfinder
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2013-1972 2 Alexey Sukhotin, Drupal 2 Elfinder, Drupal 2024-02-28 4.3 MEDIUM N/A
Cross-site request forgery (CSRF) vulnerability in the elFinder file manager module 6.x-0.x before 6.x-0.8 and 7.x-0.x before 7.x-0.8 for Drupal allows remote attackers to hijack the authentication of unspecified victims to create, modify, or delete files via unknown vectors.