PT-2010-3737 · Jv2 · Jv2 Folder Gallery
Sn!Per.S!Te Hacker
·
Publicado
2010-06-01
·
Atualizado
2017-08-17
·
CVE-2010-2127
CVSS v2.0
7.5
Alta
| Vetor | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
JV2 Folder Gallery version 3.1
Description
A remote file inclusion issue in the gallery.php file of JV2 Folder Gallery allows remote attackers to execute arbitrary PHP code via a URL in the
lang file parameter.Recommendations
For JV2 Folder Gallery version 3.1, consider restricting access to the
gallery.php file or the lang file parameter to minimize the risk of exploitation until a patch is available.Exploit
Correção
Code Injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Jv2 Folder Gallery