Coppermine.Photo.Gallery.Remote.Command.Execution

description-logoDescription

This indicates an attempt to exploit one of several remote command execution vulnerabilities in Coppermine Photo Gallery.
The vulnerabilities are caused by an error that occurs when the vulnerable software handles a malformed request. It allows a remote attacker to execute arbitrary code by sending a crafted request.

affected-products-logoAffected Products

Coppermine Photo Gallery version 1.4.4 and prior.

Impact logoImpact

System compromise: remote code execution.

recomended-action-logoRecommended Actions

Apply the patch available from the web site:
http://downloads.sourceforge.net/coppermine/cpg1.4.15.zip

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)