Vulnerability   
Search   
    Search 210752 CVE descriptions
and 93608 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.14338
Category:CGI abuses
Title:Gallery Script Execution
Summary:NOSUMMARY
Description:Description:

The remote host is running the Gallery web-based photo album.

There is a flaw in the remote version of this software which may
allow an attacker to execute arbitrary commands on the remote host.

To exploit this flaw, an attacker would require the privileges to
upload files to a remote photo album.

Solution : Upgrade to Gallery 1.4.4-pl2 or newer
Risk factor : High

Cross-Ref: BugTraq ID: 10968
Common Vulnerability Exposure (CVE) ID: CVE-2004-1466
http://www.securityfocus.com/bid/10968
http://archives.neohapsis.com/archives/fulldisclosure/2004-08/0757.html
http://www.gentoo.org/security/en/glsa/glsa-200409-05.xml
XForce ISS Database: gallery-savephotos-file-upload(17021)
https://exchange.xforce.ibmcloud.com/vulnerabilities/17021
CopyrightThis script is Copyright (C) 2003 Tenable Network Security

This is only one of 93608 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2021 E-Soft Inc. All rights reserved.