Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qv7q-gq5r-9gcx

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Static code injection vulnerability in administration/install.php in YVS Image Gallery allows remote attackers to inject arbitrary PHP code into functions/db_connect.php via unspecified vectors. NOTE: this is only a vulnerability when the administrator does not follow recommendations in the product's installation documentation.

Static code injection vulnerability in administration/install.php in YVS Image Gallery allows remote attackers to inject arbitrary PHP code into functions/db_connect.php via unspecified vectors. NOTE: this is only a vulnerability when the administrator does not follow recommendations in the product's installation documentation.

EPSS

Процентиль: 65%
0.0049
Низкий

Дефекты

CWE-94

Связанные уязвимости

nvd
больше 13 лет назад

Static code injection vulnerability in administration/install.php in YVS Image Gallery allows remote attackers to inject arbitrary PHP code into functions/db_connect.php via unspecified vectors. NOTE: this is only a vulnerability when the administrator does not follow recommendations in the product's installation documentation.

EPSS

Процентиль: 65%
0.0049
Низкий

Дефекты

CWE-94