Mehrere Schwachstellen (CVE-2026-34100, CVE-2026-34101, CVE-2026-34102, CVE-2026-34103, CVE-2026-34104, CVE-2026-34105, CVE-2026-34106, CVE-2026-34107, CVE-2026-58587, CVE-2026-58588) in Guardian

Guardian - Language-system - CRITICAL - CVE-2026-34107. The Guardian Language System contains a serious vulnerability that allows unauthenticated remote attackers to execute arbitrary operating system commands. This occurs due to improper handling of the 'id' parameter in the translate.php file, where the parameter is directly included in a PHP exec() call without any sanitization measures. An attacker can exploit this flaw by appending shell metacharacters, enabling the execution of potentially harmful commands on the server. BADGES: 👾 EXPLOITED | 🟡 PoC | SecurityVulnerability.io
Quelle: securityvulnerability.io