Gallery Cross Site Scripting and Arbitrary PHP Code Execution Vulnerabilities
BID:54013
Info
Gallery Cross Site Scripting and Arbitrary PHP Code Execution Vulnerabilities
| Bugtraq ID: | 54013 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 14 2012 12:00AM |
| Updated: | Apr 13 2015 09:19PM |
| Credit: | Chalk, Mateusz Goik, James 'albino' Kettle, Emanuel Bronshtein, and Sergey Markov |
| Vulnerable: |
Gallery Gallery 3.0.3 Gallery Gallery 3.0.2 Gallery Gallery 3.0.1 Gallery Gallery 3.0 |
| Not Vulnerable: |
Gallery Gallery 3.0.4 |
Discussion
Gallery Cross Site Scripting and Arbitrary PHP Code Execution Vulnerabilities
Gallery is prone to multiple unspecified cross-site scripting vulnerabilities and PHP code-execution vulnerabilities.
An attacker can exploit these issues to execute arbitrary script code in the context of the affected site or inject and execute arbitrary PHP code in the context of the affected application. This may facilitate a compromise of the application and the underlying system; other attacks are also possible.
Versions prior to Gallery 3.0.4 are vulnerable.
Gallery is prone to multiple unspecified cross-site scripting vulnerabilities and PHP code-execution vulnerabilities.
An attacker can exploit these issues to execute arbitrary script code in the context of the affected site or inject and execute arbitrary PHP code in the context of the affected application. This may facilitate a compromise of the application and the underlying system; other attacks are also possible.
Versions prior to Gallery 3.0.4 are vulnerable.
Exploit / POC
Gallery Cross Site Scripting and Arbitrary PHP Code Execution Vulnerabilities
Attackers can exploit these issues through a browser.
Attackers can exploit these issues through a browser.