CVE-2005-4800
Direct static code injection vulnerability in Yet Another PHP Image Gallery (YaPIG) 0.95b and earlier allows remote authenticated administrators to inject arbitrary PHP code via the TestGallery parameter in a mod_info action to modify_gallery.php, which…
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (2.17%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
Direct static code injection vulnerability in Yet Another PHP Image Gallery (YaPIG) 0.95b and earlier allows remote authenticated administrators to inject arbitrary PHP code via the TestGallery parameter in a mod_info action to modify_gallery.php, which inserts the code into guid_info.php. NOTE: this issue is easier to exploit due to a separate CSRF vulnerability.
- CVSS 2.0
- 9.0 HIGHAV:N/AC:L/Au:S/C:C/I:C/A:C
- EPSS
- 2.17% probability · 81th percentile
- CISA KEV
- Not listed
- Affected
- yapig/yapig
- Source
- cve@mitre.org
References
- http://archives.neohapsis.com/archives/bugtraq/2005-10/0161.htmlExploit, Vendor Advisory
- http://secunia.com/advisories/17041Exploit, Vendor Advisory
- http://www.osvdb.org/19960
- http://www.seclab.tuwien.ac.at/advisories/TUVSA-0510-001.txtExploit, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22753
- http://archives.neohapsis.com/archives/bugtraq/2005-10/0161.htmlExploit, Vendor Advisory
- http://secunia.com/advisories/17041Exploit, Vendor Advisory
- http://www.osvdb.org/19960
- http://www.seclab.tuwien.ac.at/advisories/TUVSA-0510-001.txtExploit, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/22753
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.