![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2008-0506 |
Description: | include/imageObjectIM.class.php in Coppermine Photo Gallery (CPG) before 1.4.15, when the ImageMagick picture processing method is configured, allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) quality, (2) angle, or (3) clipval parameter to picEditor.php. |
Test IDs: | 1.3.6.1.4.1.25623.1.0.60453 |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2008-0506 BugTraq ID: 27512 http://www.securityfocus.com/bid/27512 Bugtraq: 20080130 [waraxe-2008-SA#065] - Remote Shell Command Execution in Coppermine 1.4.14 (Google Search) http://www.securityfocus.com/archive/1/487310/100/200/threaded https://www.exploit-db.com/exploits/5019 http://www.waraxe.us/advisory-65.html http://www.securitytracker.com/id?1019286 http://secunia.com/advisories/28682 http://www.vupen.com/english/advisories/2008/0367 |