vendor:
RSGallery2
by:
Jonah Braun and John Caprez
2,1
CVSS
LOW
Remote code execution
95
CWE
Product Name: RSGallery2
Affected Version From: 1.14.3
Affected Version To: 2.0.0b1
Patch Exists: YES
Related CWE: N/A
CPE: a:rsgallery2:rsgallery2
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Joomla!
2008
Remote code execution back door(s)
RSGallery2 is a Gallery Extension for Joomla! which contains a low threat security vulnerability that allows remote code execution. The vulnerability is present in the RSGallery2 1.14.3 and 2.0.0b1 releases. An attacker can exploit this vulnerability by downloading the vulnerable version of the software from JoomlaCode and unzipping it. Then, the attacker can use the egrep command to search for the eval() function in the unzipped files.
Mitigation:
Users should upgrade to the latest version of RSGallery2 which is not vulnerable to this exploit.