CVE Vulnerabilities

CVE-2008-2722

Published: Jun 16, 2008 | Modified: Aug 08, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
LOW

Menalto Gallery before 2.2.5 allows remote attackers to bypass permissions for sub-albums via a ZIP archive.

Affected Software

Name Vendor Start Version End Version
Gallery Menalto * 2.2.4 (including)
Gallery Menalto 2.1 (including) 2.1 (including)
Gallery Menalto 2.1.1 (including) 2.1.1 (including)
Gallery Menalto 2.1.2 (including) 2.1.2 (including)
Gallery Menalto 2.2.0 (including) 2.2.0 (including)
Gallery Menalto 2.2.1 (including) 2.2.1 (including)
Gallery Menalto 2.2.2 (including) 2.2.2 (including)
Gallery Menalto 2.2.3 (including) 2.2.3 (including)
Gallery2 Ubuntu dapper *
Gallery2 Ubuntu feisty *
Gallery2 Ubuntu gutsy *
Gallery2 Ubuntu hardy *
Gallery2 Ubuntu upstream *

References