Gallery photo album package before 1.3.1 allows local and possibly remote attackers to execute arbitrary code via a modified GALLERY_BASEDIR variable that points to a directory or URL that contains a Trojan horse init.php script.
References
Configurations
History
No history.
Information
Published : 2003-04-11 04:00
Updated : 2024-02-28 10:24
NVD link : CVE-2002-1412
Mitre link : CVE-2002-1412
CVE.ORG link : CVE-2002-1412
JSON object : View
Products Affected
gallery_project
- gallery
CWE