Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Gallery Arbitrary File Deletion Vulnerability


Gallery is prone to an arbitrary file deletion vulnerability.

This vulnerability is due to improper sanitization of user-supplied session cookie data.

This may result in various attacks such as data corruption and privilege escalation; other attacks are also possible.


Versions 2.0.0. through 2.0.2. are vulnerable to this issue.







 

Privacy Statement
Copyright 2009, SecurityFocus