7.5
CVSSv2

CVE-2013-2138

Published: 10/10/2013 Updated: 10/10/2013
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The (1) uploadify and (2) flowplayer SWF files in Gallery 3 prior to 3.0.8 do not properly remove query parameters and fragments, which allows remote malicious users to have an unspecified impact via a replay attack.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

menalto gallery 3.0.2

menalto gallery 3.0.3

menalto gallery 3.0.4

menalto gallery 3.0.5

menalto gallery 3.0

menalto gallery 3.0.1

menalto gallery 3.0.6

menalto gallery