CNNVD-202508-388 Information

CNNVD ID

CNNVD-202508-388

CVE-2013-10070

  • CNNVD Published: 2025-08-05

Description (Chinese)

PHP-Charts是PHP-Charts公司的一个图标生成软件。 PHP-Charts v1.0版本存在安全漏洞,该漏洞源于未清理GET参数,可能导致PHP代码执行。

Description (English)

PHP-Charts is an icon-generation software for PHP-Charts. PHP-Charts v1.0 has a security loophole, which originates from uncleaned GT parameters and may lead to PHP code implementation.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

PHP-Charts

Published

2025-08-05

Last Modified

2026-02-24

References

https://www.exploit-db.com/exploits/24273 http://php-charts.com/ https://web.archive.org/web/20130120234844/ https://raw.githubusercontent.com/rapid7/metasploit-framework/master/modules/exploits/unix/webapp/php_charts_exec.rb https://www.exploit-db.com/exploits/24201 https://www.vulncheck.com/advisories/php-charts-php-code-execution https://access.redhat.com/security/cve/cve-2013-10070

Share on: