CVE Database
/

CVE-2004-1106

Back to search

CVE-2004-1106

Published: Dec 1, 2004

Modified: Aug 8, 2024

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in Gallery 1.4.4-pl3 and earlier allows remote attackers to execute arbitrary web script or HTML via "specially formed URLs," possibly via the include parameter in index.php.

VendorProductVersions

n/a

n/a

affected
n/a

References

gallery-script-xss(17948)
vdb-entry
x_refsource_XF
11602
vdb-entry
x_refsource_BID
DSA-642
vendor-advisory
x_refsource_DEBIAN
GLSA-200411-10
vendor-advisory
x_refsource_GENTOO

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now