CVE-2013-6226: Ajaxplorer
High severity, CVSS 8.5. EPSS: 2.2% chance of exploitation in the next 30 days.
Directory traversal vulnerability in plugins/editor.zoho/agent/save_zoho.php in the Zoho plugin in Pydio (formerly AjaXplorer) before 5.0.4 allows remote attackers to read or delete arbitrary files via unspecified vectors.
Affected products
- Ajaxplorer Ajaxplorer: up to and including 5.0.3; version 2.3.3 only; version 2.3.4 only; version 2.5 only; version 2.5.4 only; version 2.5.5 only; …
Published 2013-11-14. Last modified 2026-06-17.