PHP code injection in TinyWebGallery prior to 1.8.8 allows remote authenticated users with admin privileges to inject arbitrary code into the .htusers.php file.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
tinywebgallery tinywebgallery |