📦 Advanced File Manager

by Advancedfilemanager

🔍 What is Advanced File Manager?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-13333

HIGH CVSS 7.5 Jan 17, 2025

The Advanced File Manager WordPress plugin versions 5.2.12 to 5.2.13 allow authenticated attackers with Subscriber-level access and upload permissions to upload arbitrary files due to missing file typ...

CVE-2024-11391

HIGH CVSS 7.5 Dec 3, 2024

The Advanced File Manager WordPress plugin allows authenticated attackers with Subscriber-level access to upload arbitrary files due to missing file type validation. This vulnerability can lead to rem...

CVE-2024-8126

HIGH CVSS 7.5 Sep 26, 2024

The Advanced File Manager WordPress plugin allows authenticated attackers with Subscriber-level access to upload arbitrary files, including .htaccess files, which can lead to remote code execution. Th...

CVE-2024-5598

HIGH CVSS 7.5 Jun 29, 2024

The Advanced File Manager WordPress plugin exposes sensitive files to unauthenticated attackers through a vulnerable function. This allows extraction of backups and other confidential data from the Tr...

CVE-2025-47688

MEDIUM CVSS 5.3 May 7, 2025

This CVE describes a missing authorization vulnerability in the Advanced File Manager WordPress plugin that allows attackers to exploit incorrectly configured access control security levels. Attackers...

CVE-2024-13805

MEDIUM CVSS 6.4 Mar 7, 2025

This vulnerability allows authenticated WordPress users with Subscriber-level access or higher to upload malicious SVG files containing stored cross-site scripting (XSS) payloads. When other users vie...

CVE-2024-8725

MEDIUM CVSS 6.8 Sep 26, 2024

This vulnerability allows authenticated WordPress users with Subscriber-level access or higher to upload .css and .js files to arbitrary directories within the WordPress root. Attackers can exploit th...