Unrated severityNVD Advisory· Published Jan 31, 2008· Updated Apr 23, 2026
CVE-2008-0506
CVE-2008-0506
Description
include/imageObjectIM.class.php in Coppermine Photo Gallery (CPG) before 1.4.15, when the ImageMagick picture processing method is configured, allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) quality, (2) angle, or (3) clipval parameter to picEditor.php.
Affected products
1- cpe:2.3:a:coppermine:coppermine_photo_gallery:*:*:*:*:*:*:*:*Range: <=1.4.14
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
8- coppermine-gallery.net/forum/index.phpnvdPatch
- www.securityfocus.com/bid/27512nvdExploitPatch
- secunia.com/advisories/28682nvdVendor Advisory
- www.vupen.com/english/advisories/2008/0367nvdVendor Advisory
- www.securityfocus.com/archive/1/487310/100/200/threadednvd
- www.securitytracker.com/idnvd
- www.waraxe.us/advisory-65.htmlnvd
- www.exploit-db.com/exploits/5019nvd
News mentions
0No linked articles in our index yet.