Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The imagecomments function in classes.php in MiniGal b13 allow remote attackers to inject arbitrary PHP code into a file in the thumbs/ directory via the (1) name or (2) email parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MiniGal b13脚本classes.php imagecomments函数代码注入漏洞
Vulnerability Description
MiniGal是一款基于WEB的图库管理程序。 MiniGal b13的classes.php中的imagecomments函数存在代码注入漏洞。远程攻击者可以借助名字和电子邮箱参数,注入任意的PHP代码到thumbs/ directory中的文件。
CVSS Information
N/A
Vulnerability Type
N/A