CVE-2005-4022

Cross-site scripting (XSS) vulnerability in the "Add Image From Web" feature in Gallery 2.0 before 2.0.2 allows remote attackers to inject arbitrary web script or HTML via Javascript in an IMG tag.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:gallery_project:gallery:2.0:*:*:*:*:*:*:*
cpe:2.3:a:gallery_project:gallery:2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:gallery_project:gallery:2.0_alpha1:*:*:*:*:*:*:*
cpe:2.3:a:gallery_project:gallery:2.0_alpha2:*:*:*:*:*:*:*
cpe:2.3:a:gallery_project:gallery:2.0_alpha3:*:*:*:*:*:*:*
cpe:2.3:a:gallery_project:gallery:2.0_alpha4:*:*:*:*:*:*:*
cpe:2.3:a:gallery_project:gallery:2.0_beta1:*:*:*:*:*:*:*
cpe:2.3:a:gallery_project:gallery:2.0_beta2:*:*:*:*:*:*:*
cpe:2.3:a:gallery_project:gallery:2.0_beta3:*:*:*:*:*:*:*
cpe:2.3:a:gallery_project:gallery:2.0_rc1:*:*:*:*:*:*:*
cpe:2.3:a:gallery_project:gallery:2.0_rc2:*:*:*:*:*:*:*

History

No history.

Information

Published : 2005-12-05 11:03

Updated : 2024-02-28 10:42


NVD link : CVE-2005-4022

Mitre link : CVE-2005-4022

CVE.ORG link : CVE-2005-4022


JSON object : View

Products Affected

gallery_project

  • gallery