7.5
CVSSv2

CVE-2013-2240

Published: 10/10/2013 Updated: 10/10/2013
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

lib/flowplayer.swf.php in Gallery 3 prior to 3.0.9 does not properly remove query fragments, which allows remote malicious users to have an unspecified impact via a replay attack, a different vulnerability than CVE-2013-2138.

Vulnerable Product Search on Vulmon Subscribe to Product

menalto gallery 3.0.5

menalto gallery 3.0.6

menalto gallery 3.0.7

menalto gallery 3.0.8

menalto gallery 3.0

menalto gallery 3.0.1

menalto gallery 3.0.2

menalto gallery 3.0.3

menalto gallery 3.0.4