CVE Vulnerabilities

CVE-2007-2715

Published: May 16, 2007 | Modified: Oct 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Admin/users.php in Snaps! Gallery 1.4.4 allows remote attackers to change arbitrary usernames and passwords via the (1) username, or the (2) password and password2 parameters in an edit action.

Affected Software

Name Vendor Start Version End Version
Snaps_gallery Snaps_gallery 1.4.4 (including) 1.4.4 (including)

References