The installer for Gallery 2.0 before 2.0.2 stores the install log under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2005-12-05 11:03
Updated : 2024-02-28 10:42
NVD link : CVE-2005-4021
Mitre link : CVE-2005-4021
CVE.ORG link : CVE-2005-4021
JSON object : View
Products Affected
gallery_project
- gallery
CWE