Gf 3xplorer is a narrowly scoped file-browsing and exploration tool with a modest vulnerability footprint centered on the single product bearing its name. Its durable signal reflects common application-layer input-handling weaknesses: sensitive information exposure, path-traversal conditions allowing unauthorized directory access, and cross-site scripting vulnerabilities, all typical of web-facing file-management interfaces. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Gf 3xplorer over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-6475MEDIUM Multiple directory traversal vulnerabilities in GF-3XPLORER 2.4 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang_sel parameter to | Dec 20, 2007 | 6.4 | 26 | NO | YES |
CVE-2007-6476MEDIUM GF-3XPLORER 2.4 allows remote attackers to obtain configuration information via a direct request to explorer/phpinfo.php, which calls the phpinfo function. | Dec 20, 2007 | 5.0 | 23 | NO | YES |
CVE-2007-6474MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in GF-3XPLORER 2.4 allow remote attackers to inject arbitrary web script or HTML via the newdir parameter to index_3x.php, and u | Dec 20, 2007 | 4.3 | 21 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Gf 3xplorer.
Media articles that mention a CVE ID that affects a product developed by Gf 3xplorer — matched by CVE ID, not by vendor name.