EIP-2026-107219
PRE-CVEFree PHP photo Gallery script - Remote Command Execution
Title source: legacyExploitation Summary
EIP tracks 1 public exploit for EIP-2026-107219. PoCs published by ViRuS Qalaa.
AI-analyzed exploit summary This exploit targets a command injection vulnerability in the Free PHP photo gallery script. The vulnerability exists in the `adodb-perf.inc.php` file where user-controlled input is passed to the `exec` function without proper sanitization, allowing remote command execution.
Description
Free PHP photo Gallery script - Remote Command Execution
Exploits (1)
This exploit targets a command injection vulnerability in the Free PHP photo gallery script. The vulnerability exists in the `adodb-perf.inc.php` file where user-controlled input is passed to the `exec` function without proper sanitization, allowing remote command execution.