Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

PhotoPost vBGallery 'upload.php' Arbitrary File Upload Vulnerability

PhotoPost vBGallery is prone to a vulnerability that lets remote attackers upload and execute arbitrary script code because the application fails to sanitize user-supplied input.

An attacker can leverage this issue to execute arbitrary code on an affected computer with the privileges of the webserver process.

PhotoPost vBGallery v2.4.2 is vulnerable; other versions may also be affected.







 

Privacy Statement
Copyright 2009, SecurityFocus