Roxy Fileman 1.4.5 is susceptible to unrestricted file upload via upload.php. An attacker can execute malware, obtain sensitive information, modify data, and/or gain full control over a compromised system without entering necessary credentials.
id: CVE-2018-20526
info:
name: Roxy Fileman 1.4.5 - Unrestricted File Upload
author: DhiyaneshD
...