CVE-2023-53868
EUVD-2025-20343815.12.2025, 21:15
Coppermine Gallery 1.6.25 contains a remote code execution vulnerability that allows authenticated attackers to upload malicious PHP files through the plugin manager. Attackers can upload a zipped PHP file with system commands to the plugin directory and execute arbitrary code by accessing the uploaded plugin script.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| coppermine-gallery | coppermine_photo_gallery | 1.6.25 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration