Unspecified vulnerability in util.php in Gallery before 1.5.2-pl2 allows remote authenticated users with trick an owner into modifying stored album data and possibly executing arbitrary code via unspecified vectors involving a crafted link to a crafted file.
Link | Tags |
---|---|
http://www.securityfocus.com/bid/16533 | vdb entry patch |
http://securitytracker.com/id?1015641 | vdb entry patch |
http://www.digitalarmaments.com/2006140293402395.html | url repurposed |
http://archives.neohapsis.com/archives/bugtraq/2006-02/0286.html | mailing list |
http://archives.neohapsis.com/archives/bugtraq/2006-02/0224.html | mailing list |
http://gallery.menalto.com/gallery_1_5_2_pl2_security_release | patch |
http://www.osvdb.org/22944 | vdb entry patch |
http://secunia.com/advisories/18735 | third party advisory patch vendor advisory |
http://www.osvdb.org/23256 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/24768 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/24538 | vdb entry |