A vulnerability was detected in Great Developers Certificate Generation System up to 97171bb0e5e22e52eacf4e4fa81773e5f3cffb73. This vulnerability affects unknown code of the file /restructured/csv.php. The manipulation of the argument photo results in os command injection. The attack can be executed remotely. This product implements a rolling release for ongoing delivery, which means version information for affected or updated releases is unavailable. The code repository of the project has not been active for many years.
History

Tue, 24 Feb 2026 14:45:00 +0000

Type Values Removed Values Added
First Time appeared Greatdevelopers
Greatdevelopers certificate
CPEs cpe:2.3:a:greatdevelopers:certificate:*:*:*:*:*:*:*:*
Vendors & Products Greatdevelopers
Greatdevelopers certificate

Mon, 09 Feb 2026 22:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 09 Feb 2026 11:00:00 +0000

Type Values Removed Values Added
First Time appeared Great Developers
Great Developers certificate Generation System
Vendors & Products Great Developers
Great Developers certificate Generation System

Sun, 08 Feb 2026 21:00:00 +0000

Type Values Removed Values Added
Description A vulnerability was detected in Great Developers Certificate Generation System up to 97171bb0e5e22e52eacf4e4fa81773e5f3cffb73. This vulnerability affects unknown code of the file /restructured/csv.php. The manipulation of the argument photo results in os command injection. The attack can be executed remotely. This product implements a rolling release for ongoing delivery, which means version information for affected or updated releases is unavailable. The code repository of the project has not been active for many years.
Title Great Developers Certificate Generation System csv.php os command injection
Weaknesses CWE-77
CWE-78
References
Metrics cvssV2_0

{'score': 7.5, 'vector': 'AV:N/AC:L/Au:N/C:P/I:P/A:P/E:ND/RL:ND/RC:UR'}

cvssV3_0

{'score': 7.3, 'vector': 'CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:X/RL:X/RC:R'}

cvssV3_1

{'score': 7.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L/E:X/RL:X/RC:R'}

cvssV4_0

{'score': 6.9, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X'}


cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2026-02-08T20:32:06.688Z

Updated: 2026-02-23T09:49:08.495Z

Reserved: 2026-02-07T15:27:51.484Z

Link: CVE-2026-2184

cve-icon Vulnrichment

Updated: 2026-02-09T21:07:26.041Z

cve-icon NVD

Status : Analyzed

Published: 2026-02-08T21:15:47.140

Modified: 2026-02-24T14:41:22.790

Link: CVE-2026-2184

cve-icon Redhat

No data.