mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-19 23:44:49 +02:00
742 B
742 B
CVE-2008-4645
Description
plugins/event_tracer/event_list.php in PhpWebGallery 1.7.2 and earlier allows remote authenticated administrators to execute arbitrary PHP code via PHP sequences in the sort parameter, which is processed by create_function.
POC
Reference
Github
No PoCs found on GitHub currently.