Report: CVE-2026-8208 - Gibbon Local File Inclusion Remote Command Execution

Report: CVE-2026-8208 - Gibbon Local File Inclusion Remote Command Execution

CVE ID :CVE-2026-8208 Published : May 9, 2026, 4:16 a.m. | 1 hour, 28 minutes ago Description :Gibbon versions before v30.0.01 are affected by a local file inclusion vulnerability resulting in RCE by changing the report archive directory and forcing interpretation of a user provided .zip as PHP. Successful exploitation requires Teacher or higher privileges. Exploitation could result in compromise of the underlying web server. Severity: 8.9 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
May 9, 2026
Affected Product: PHP
Attack Vector: local
Impact: RCE