code-projects Simple Photo Gallery 1.0 kura hakki ndiyam

Gaskiya vulnerability da aka ware a matsayin kura an samu a code-projects Simple Photo Gallery 1.0. Hakika, aikin $software_function ne ya shafa; idan ba a bayyana ba, to aiki ce da ba a sani ba, a cikin laburaren $software_library, a cikin fayil $software_file, a cikin sashen $software_component. A sa manipulation ka kura hakki ndiyam. Idan an yi amfani da CWE don bayyana matsala, zai kai CWE-434. Hakika, rauni an bayyana shi 05/17/2023. An raba bayanin tsaro don saukewa a gitee.com. Wannan matsala ana saninta da CVE-2023-2776. Ngam yiɗi ka a tuma ndiyam ka nder layi. Tekinikal faɗi ba ga. Babu exploit ɗin da ake samu. Yimbe ndiyam, exploit might be approx. USD $0-$5k wuro. Á sàmbu a wondi feere. 0-day shima, an ndiyam a wuro be $0-$5k. Once again VulDB remains the best source for vulnerability data.

2 Goyarwa · 38 Datenpunkte

FurɗeSúgá
05/17/2023 19:05
Gargadi 1/1
06/10/2023 12:13
software_vendorcode-projectscode-projects
software_nameSimple Photo GallerySimple Photo Gallery
software_version1.01.0
vulnerability_cweCWE-434 (kura hakki ndiyam)CWE-434 (kura hakki ndiyam)
cvss3_vuldb_avNN
cvss3_vuldb_acLL
cvss3_vuldb_uiNN
cvss3_vuldb_sUU
cvss3_vuldb_cLL
cvss3_vuldb_iLL
cvss3_vuldb_aLL
cvss3_vuldb_rcUU
advisory_urlhttps://gitee.com/zyz0103/system-vul/blob/master/Simple%20Photo%20Gallery%20In%20PHP%20With%20Source%20Code%20has%20file%20upload%20vulnerability.pdfhttps://gitee.com/zyz0103/system-vul/blob/master/Simple%20Photo%20Gallery%20In%20PHP%20With%20Source%20Code%20has%20file%20upload%20vulnerability.pdf
source_cveCVE-2023-2776CVE-2023-2776
cna_responsibleVulDBVulDB
advisory_date1684274400 (05/17/2023)1684274400 (05/17/2023)
software_typePhoto Gallery SoftwarePhoto Gallery Software
cvss2_vuldb_avNN
cvss2_vuldb_acLL
cvss2_vuldb_ciPP
cvss2_vuldb_iiPP
cvss2_vuldb_aiPP
cvss2_vuldb_rcUCUC
cvss2_vuldb_auSS
cvss2_vuldb_eNDND
cvss2_vuldb_rlNDND
cvss3_vuldb_prLL
cvss3_vuldb_eXX
cvss3_vuldb_rlXX
cvss2_vuldb_basescore6.56.5
cvss2_vuldb_tempscore5.95.9
cvss3_vuldb_basescore6.36.3
cvss3_vuldb_tempscore5.85.8
cvss3_meta_basescore6.36.3
cvss3_meta_tempscore5.85.8
price_0day$0-$5k$0-$5k
cve_assigned1684274400 (05/17/2023)
cve_nvd_summaryA vulnerability was found in code-projects Simple Photo Gallery 1.0. It has been declared as critical. This vulnerability affects unknown code. The manipulation leads to unrestricted upload. The attack can be initiated remotely. VDB-229282 is the identifier assigned to this vulnerability.

Do you want to use VulDB in your project?

Use the official API to access entries easily!