Security Advisory
CVE-2020-5593
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Zenphoto versions prior to 1.5.7 allows an attacker to conduct PHP code injection attacks by leading a user to upload a specially crafted .zip file.