|
|
Info |
Last Modified |
| 8 months ago |
|
|
|
|
Description |
Gallery contains a flaw inside save_photos.php that will allow an attacker to upload arbitrary PHP script. The problem is that if the temporary directory is web-accessible, authenticated users with upload privileges may upload arbitrary PHP scripts which may then be executed. The script times out in 30 seconds if no more data is uploaded but in that 30 seconds an attacker can execute their uploaded PHP file.
|
|
Classification |
Location:
Remote/Network Access Required
Attack Type:
Input Manipulation
Impact:
Loss of Confidentiality
Exploit:
Exploit Available
Disclosure:
OSVDB Verified
OSVDB:
Web Related
|
|
Solution |
Upgrade to version 1.4.4-p11 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.
|
|
Products |
|
Gallery
 |
1.4.4 |
|
|
|
|
|
|
Credit |
- aCiDBiTS - acidbits
hotmail.com -
|
|
BlogsProvided by Technorati
|
None found at this time
|
|
|