Back to search
CVE-2008-2724
Published: Jun 16, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
Menalto Gallery before 2.2.5 does not enforce permissions for non-album items that have been protected by a password, which might allow remote attackers to bypass intended access restrictions.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
30650
third-party-advisory
x_refsource_SECUNIA
30826
third-party-advisory
x_refsource_SECUNIA
http://gallery.menalto.com/gallery_2.2.5_released
x_refsource_CONFIRM
FEDORA-2008-5479
vendor-advisory
x_refsource_FEDORA
FEDORA-2008-5576
vendor-advisory
x_refsource_FEDORA
gallery-password-module-security-bypass(43031)
vdb-entry
x_refsource_XF
29681
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now