Loading
Generated remediation guidance and an executive summary. No account required.
Multiple PHP remote file inclusion vulnerabilities in Coppermine Photo Gallery (CPG) allow remote attackers to execute arbitrary PHP code via a URL in the (1) cmd parameter to (a) image_processor.php or (b) picmgmt.inc.php, or the (2) path parameter to (c) include/functions.php, (d) include/plugin_api.inc.php, (e) index.php, or (f) pluginmgr.php.
Use Coppermine vendor hub and Coppermine Photo Gallery product page to widen CVE-2007-1414 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2007-4283, CVE-2007-3558 and CVE-2007-1107 for nearby disclosures in the same product family.