Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2003-1227

Опубликовано: 31 дек. 2003
Источник: nvd
CVSS2: 7.5
EPSS Низкий

Описание

PHP remote file include vulnerability in index.php for Gallery 1.4 and 1.4-pl1, when running on Windows or in Configuration mode on Unix, allows remote attackers to inject arbitrary PHP code via a URL in the GALLERY_BASEDIR parameter, a different vulnerability than CVE-2002-1412. NOTE: this issue might be exploitable only during installation, or if the administrator has not run a security script after installation.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:gallery_project:gallery:1.4:*:*:*:*:*:*:*
cpe:2.3:a:gallery_project:gallery:1.4_pl1:*:*:*:*:*:*:*

EPSS

Процентиль: 90%
0.05744
Низкий

7.5 High

CVSS2

Дефекты

CWE-94

Связанные уязвимости

debian
больше 21 года назад

PHP remote file include vulnerability in index.php for Gallery 1.4 and ...

github
больше 3 лет назад

PHP remote file include vulnerability in index.php for Gallery 1.4 and 1.4-pl1, when running on Windows or in Configuration mode on Unix, allows remote attackers to inject arbitrary PHP code via a URL in the GALLERY_BASEDIR parameter, a different vulnerability than CVE-2002-1412. NOTE: this issue might be exploitable only during installation, or if the administrator has not run a security script after installation.

EPSS

Процентиль: 90%
0.05744
Низкий

7.5 High

CVSS2

Дефекты

CWE-94