Cross-site scripting (XSS) vulnerability in displayimage.php in Coppermine Photo Gallery before 1.3.4 allows remote attackers to inject arbitrary web script or HTML via EXIF data.
Link | Tags |
---|---|
http://coppermine-gallery.net/forum/index.php?topic=20933.0 | patch |
http://secunia.com/advisories/16499 | third party advisory |
http://securitytracker.com/id?1014799 | vdb entry |
http://www.securityfocus.com/bid/14625 | patch vdb entry |