CVE-2020-12102: Prasathmani Tiny File Manager
High severity, CVSS 7.7. EPSS: 1.8% chance of exploitation in the next 30 days.
In Tiny File Manager 2.4.1, there is a Path Traversal vulnerability in the ajax recursive directory listing functionality. This allows authenticated users to enumerate directories and files on the filesystem (outside of the application scope).
Affected products
- Prasathmani Tiny File Manager: version 2.4.1 only
Published 2020-04-28. Last modified 2026-06-17.