SQL injection vulnerability in Coppermine Photo Gallery (CPG) before 1.4.11 allows remote attackers to execute arbitrary SQL commands via an album password cookie to an unspecified component.
Link | Tags |
---|---|
http://secunia.com/advisories/25846 | third party advisory vendor advisory |
http://www.securityfocus.com/bid/24710 | patch vdb entry |
http://coppermine-gallery.net/forum/index.php?topic=44845.0 | patch |