Medium
CVSS 6.4
Overview
viewFile.php in the scm component of Gforge before 4.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the file_name parameter.
viewFile.php in the scm component of Gforge before 4.0 allows remote attackers t...
viewFile.php in the scm component of Gforge before 4.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the file_name parameter.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: