Show filters
23 Total Results
Displaying 11-20 of 23
Sort by:
Attacker Value
Unknown
CVE-2008-2721
Disclosure Date: June 16, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the album-select module in Menalto Gallery before 2.2.5 allows remote attackers to obtain titles of hidden albums by attempting to add a new album to a hidden album.
0
Attacker Value
Unknown
CVE-2008-2723
Disclosure Date: June 16, 2008 (last updated October 04, 2023)
embed.php in Menalto Gallery before 2.2.5 allows remote attackers to obtain the full path via unknown vectors related to "spoofing the remote address."
0
Attacker Value
Unknown
CVE-2008-2722
Disclosure Date: June 16, 2008 (last updated October 04, 2023)
Menalto Gallery before 2.2.5 allows remote attackers to bypass permissions for sub-albums via a ZIP archive.
0
Attacker Value
Unknown
CVE-2008-2720
Disclosure Date: June 16, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Menalto Gallery before 2.2.5 allows remote attackers to inject arbitrary web script or HTML via the (1) host and (2) path components of a URL.
0
Attacker Value
Unknown
CVE-2007-6693
Disclosure Date: January 17, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the WebCam module in Menalto Gallery before 2.2.4 has unknown impact and attack vectors related to a "proxied request."
0
Attacker Value
Unknown
CVE-2007-6688
Disclosure Date: January 17, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the Installation application in Menalto Gallery before 2.2.4 has unknown impact and attack vectors related to "web-accessibility protection of the storage folder."
0
Attacker Value
Unknown
CVE-2007-6687
Disclosure Date: January 17, 2008 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Menalto Gallery before 2.2.4 allow remote attackers to inject arbitrary web script or HTML via crafted filenames to the (1) Core or (2) add-item modules; or via (3) HTTP PROPPATCH in the WebDAV module.
0
Attacker Value
Unknown
CVE-2007-6690
Disclosure Date: January 17, 2008 (last updated October 04, 2023)
The Gallery Remote module in Menalto Gallery before 2.2.4 does not check permissions for unspecified GR commands, which has unknown impact and attack vectors.
0
Attacker Value
Unknown
CVE-2007-6692
Disclosure Date: January 17, 2008 (last updated October 04, 2023)
Open redirect vulnerability in Menalto Gallery before 2.2.4 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the (1) Core and (2) print modules.
0
Attacker Value
Unknown
CVE-2007-6685
Disclosure Date: January 17, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the Publish XP module Menalto Gallery before 2.2.4 allows attackers to create albums and upload files via unknown vectors.
0