📦

coppermine_photo_gallery

Vendor: coppermine

Actively Exploited 0 CISA KEV List
PoC / Exploits 22 Code Available
Total RCEs 5 Remote Access
Total CVEs 74 Total Indexed
Avg. EPSS 3.84% Exploit Prob.
Latest CVE CVE-2023-53868 Dec 15

Security Vulnerability Index

Page 6 / 8
7.5 CVSS
CVE-2004-1989
Exploit Found

PHP remote file inclusion vulnerability in theme.php in Coppermine Photo Gallery 1.2.2b allows remote attackers to execute arbitrary PHP code by modifying the THEME_DIR parameter to reference a URL on a remote web server that contains user_list_info_box.inc.

EPSS: 9.33%
7.5 CVSS
CVE-2004-1988
Exploit Found

PHP remote file inclusion vulnerability in init.inc.php in Coppermine Photo Gallery 1.2.0 RC4 allows remote attackers to execute arbitrary PHP code by modifying the CPG_M_DIR to reference a URL on a remote web server that contains functions.inc.php.

EPSS: 9.33%
7.5 CVSS

picmgmtbatch.inc.php in Coppermine Photo Gallery 1.2.2b and 1.2.0 RC4 allows remote attackers with administrative privileges to execute arbitrary commands via shell metacharacters in the (1) $CONFIG['impath'] or (2) $CONFIG['jpeg_qual'] parameters.

EPSS: 10.20%
5.0 CVSS
CVE-2004-1986
Exploit Found

Directory traversal vulnerability in modules.php in Coppermine Photo Gallery 1.2.2b and 1.2.0 RC4 allows remote attackers with administrative privileges to read arbitrary files via a .. (dot dot) in the startdir parameter.

EPSS: 10.63%