Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w5x3-f77x-6rvv

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Directory traversal vulnerability in the session handling class (GallerySession.class) in Gallery 2 up to 2.0.2 allows remote attackers to access and delete files by specifying the session in a cookie, which is used in constructing file paths before the session value is sanitized.

Directory traversal vulnerability in the session handling class (GallerySession.class) in Gallery 2 up to 2.0.2 allows remote attackers to access and delete files by specifying the session in a cookie, which is used in constructing file paths before the session value is sanitized.

EPSS

Процентиль: 92%
0.09702
Низкий

Связанные уязвимости

nvd
больше 19 лет назад

Directory traversal vulnerability in the session handling class (GallerySession.class) in Gallery 2 up to 2.0.2 allows remote attackers to access and delete files by specifying the session in a cookie, which is used in constructing file paths before the session value is sanitized.

debian
больше 19 лет назад

Directory traversal vulnerability in the session handling class (Galle ...

EPSS

Процентиль: 92%
0.09702
Низкий