Looking for the vulnerability index of Invicti's legacy products?
Coppermine Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-53868) - Vulnerability Database

Coppermine Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-53868)

Description

Coppermine Gallery 1.6.25 contains a remote code execution vulnerability that allows authenticated attackers to upload malicious PHP files through the plugin manager. Attackers can upload a zipped PHP file with system commands to the plugin directory and execute arbitrary code by accessing the uploaded plugin script.

References