vendor:
Gemitel
by:
Unknown
7.5
CVSS
HIGH
Remote Code Execution
98
CWE
Product Name: Gemitel
Affected Version From: Unknown
Affected Version To: Unknown
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
Unknown
Remote Code Execution in Gemitel
A vulnerability has been identified in the handling of input by Gemitel. Because of this, it may be possible for a remote user to gain unauthorized access to a system using the vulnerable software. It is possible to influence the include path of certain files, which could lead to an attacker including arbitrary PHP files from an external system.
Mitigation:
Apply the latest security patches or updates provided by the vendor. Restrict access to the vulnerable software from untrusted networks or sources.