Описание
Gallery 1.5.x before 1.5.10 and 1.6 before 1.6-RC3, when register_globals is enabled, allows remote attackers to bypass authentication and gain administrative via unspecified cookies. NOTE: some of these details are obtained from third party information.
| Релиз | Статус | Примечание |
|---|---|---|
| dapper | ignored | end of life |
| devel | not-affected | 1.5.10.dfsg-1ubuntu1 |
| gutsy | ignored | end of life, was needed |
| hardy | not-affected | 1.5.7-2ubuntu1 |
| intrepid | ignored | end of life, was needed |
| jaunty | not-affected | 1.5.9-1.2ubuntu1 |
| karmic | not-affected | 1.5.9-1.2ubuntu1 |
| upstream | released | 1.5.9-1.2 |
Показывать по
Ссылки на источники
6.8 Medium
CVSS2
Связанные уязвимости
Gallery 1.5.x before 1.5.10 and 1.6 before 1.6-RC3, when register_globals is enabled, allows remote attackers to bypass authentication and gain administrative via unspecified cookies. NOTE: some of these details are obtained from third party information.
Gallery 1.5.x before 1.5.10 and 1.6 before 1.6-RC3, when register_glob ...
Gallery 1.5.x before 1.5.10 and 1.6 before 1.6-RC3, when register_globals is enabled, allows remote attackers to bypass authentication and gain administrative via unspecified cookies. NOTE: some of these details are obtained from third party information.
6.8 Medium
CVSS2