Mehrere Schwachstellen (CVE-2026-34100, CVE-2026-34101, CVE-2026-34102, CVE-2026-34103, CVE-2026-34104, CVE-2026-34105, CVE-2026-34106, CVE-2026-34107, CVE-2026-58587, CVE-2026-58588) in Guardian
⚠️ CVE-Referenzen:
CVE-2026-34100
CVE-2026-34101
CVE-2026-34102
CVE-2026-34103
CVE-2026-34104
CVE-2026-34105
CVE-2026-34106
CVE-2026-34107
CVE-2026-58587
CVE-2026-58588
Guardian - Language-system - CRITICAL - CVE-2026-34107.
The Guardian Language System contains a serious vulnerability that allows unauthenticated remote attackers to execute arbitrary operating system commands. This occurs due to improper handling of the 'id' parameter in the translate.php file, where the parameter is directly included in a PHP exec() call without any sanitization measures. An attacker can exploit this flaw by appending shell metacharacters, enabling the execution of potentially harmful commands on the server.
BADGES: 👾 EXPLOITED | 🟡 PoC | SecurityVulnerability.io
Quelle: securityvulnerability.io