Webfileexplorer develops a focused web-based file management product with a narrow footprint, and its disclosed vulnerabilities center on SQL injection arising from improper input handling. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Webfileexplorer over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-1314HIGH body.asp in Web File Explorer 3.1 allows remote attackers to create arbitrary files and execute arbitrary code via the savefile action with a file parameter containing a filename t | Apr 17, 2009 | 10.0 | 41 | NO | YES |
CVE-2009-1323HIGH SQL injection vulnerability in body.asp in Web File Explorer 3.1 allows remote attackers to execute arbitrary SQL commands via the id parameter. | Apr 17, 2009 | 7.5 | 30 | NO | YES |
CVE-2009-1495MEDIUM Web File Explorer 3.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request fo | May 1, 2009 | 5.0 | 23 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Webfileexplorer.
Media articles that mention a CVE ID that affects a product developed by Webfileexplorer — matched by CVE ID, not by vendor name.