CVE Vulnerabilities

CVE-2008-2724

Published: Jun 16, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

Menalto Gallery before 2.2.5 does not enforce permissions for non-album items that have been protected by a password, which might allow remote attackers to bypass intended access restrictions.

Affected Software

NameVendorStart VersionEnd Version
GalleryMenalto2.1 (including)2.1 (including)
GalleryMenalto2.1.1 (including)2.1.1 (including)
GalleryMenalto2.1.2 (including)2.1.2 (including)
GalleryMenalto2.2.0 (including)2.2.0 (including)
GalleryMenalto2.2.1 (including)2.2.1 (including)
GalleryMenalto2.2.2 (including)2.2.2 (including)
GalleryMenalto2.2.3 (including)2.2.3 (including)
GalleryMenalto2.2.4 (including)2.2.4 (including)
Gallery2Ubuntudapper*
Gallery2Ubuntufeisty*
Gallery2Ubuntugutsy*
Gallery2Ubuntuhardy*
Gallery2Ubuntuupstream*

References