PT-2007-3364 · Xo Design · Xodagallery

CVE-2007-2020

·

Publicado

2007-04-12

·

Atualizado

2025-01-17

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions xodagallery (affected versions not specified)
Description The issue allows remote attackers to execute arbitrary code via the cmd parameter in administration.php. However, it's noted that administration.php does not use the cmd parameter for inclusion, which disputes the vulnerability.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2007-2020

Produtos afetados

Xodagallery