
Cloud Vulnerability DB
A community-led vulnerabilities database
Highbg can be injected into shell command construction, leading to possible RCE in affected configurations.
elFinder contains a command injection vulnerability in the resize command.
The bg (background color) parameter is accepted from user input and passed through image resize/rotate processing. In configurations that use the ImageMagick CLI backend, this value is incorporated into shell command strings without sufficient escaping. An attacker able to invoke the resize command with a crafted bg value may achieve arbitrary command execution as the web server process user.
This issue affects configurations where:
resize command is enabled,An attacker may execute arbitrary OS commands with the privileges of the web server process. Impact depends on server configuration, enabled commands, backend image library selection, and surrounding deployment controls.
Affected: all versions before <FIXED_VERSION> Patched: <FIXED_VERSION>
The vulnerable flow is:
resize command accepts the bg parameter from the request.bg against a strict allowlist of supported color formats, andPossible mitigations for users who cannot upgrade immediately:
resize command if not required,Thanks to Lin, WeiChi for the responsible disclosure.
Source: NVD
Free Vulnerability Assessment
Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.
Get a personalized demo
"Best User Experience I have ever seen, provides full visibility to cloud workloads."
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
"We know that if Wiz identifies something as critical, it actually is."