4.6
CVSSv2

CVE-2005-2596

Published: 17/08/2005 Updated: 05/09/2008
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

User.php in Gallery, as used in Postnuke, allows users with any Admin privileges to gain access to all galleries.

Vulnerable Product Search on Vulmon Subscribe to Product

gallery project gallery 1.3.4

Vendor Advisories

A bug in gallery has been discovered that grants all registrated postnuke users full access to the gallery The old stable distribution (woody) is not affected by this problem For the stable distribution (sarge) this problem has been fixed in version 15-1sarge1 For the unstable distribution (sid) this problem has been fixed in version 15-2 We ...