5
CVSSv2

CVE-2005-1947

Published: 09/06/2005 Updated: 08/02/2024
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in Invision Gallery prior to 1.3.1 allows remote malicious users to delete albums and images as another user via a link or IMG tag to the (1) albums or (2) delimg actions.

Vulnerable Product Search on Vulmon Subscribe to Product

invisioncommunity gallery