oss-sec mailing list archives

Re: CVE request - coppermine gallery <1.4.26 code execution vulnerability


From: Henri Salo <henri () nerv fi>
Date: Mon, 22 Feb 2010 19:55:38 +0200

On Wed, 10 Feb 2010 11:23:31 +0100
Hanno Böck <hanno () hboeck de> wrote:

http://forum.coppermine-gallery.net/index.php/topic,63510.0.html

"The release covers a recently discovered input validation
vulnerability that allows (if unpatched) a malevolent visitor to
include own script routines"

What is the status of this?

---
Henri Salo


Current thread: