vendor:
Axiom photo gallery
by:
DeltahackingTEAM
9
CVSS
CRITICAL
Remote File Include
CWE
Product Name: Axiom photo gallery
Affected Version From: 2000.8.6
Affected Version To: 2000.8.6
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
Unknown
Axiom 0.8.6 photo gallery (template.php) Remote File Include Vulnerability
The Axiom 0.8.6 photo gallery (template.php) is vulnerable to remote file inclusion. An attacker can exploit this vulnerability by providing a malicious file as the baseAxiomPath parameter in the template.php file. This allows the attacker to execute arbitrary code on the server.
Mitigation:
To mitigate this vulnerability, it is recommended to update to a patched version of the Axiom photo gallery software.