CVE-2023-53868
15.12.2025, 21:15
Coppermine Gallery 1.6.25 contains a remote code execution vulnerability that allows authenticated attackers to upload malicious PHP files through the plugin manager. Attackers can upload a zipped PHP file with system commands to the plugin directory and execute arbitrary code by accessing the uploaded plugin script.Enginsight
| Vendor | Product | Version |
|---|---|---|
| coppermine-gallery | coppermine_photo_gallery | 1.6.25 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration