CVE-2008-5296
01.12.2008, 15:30
Gallery 1.5.x before 1.5.10 and 1.6 before 1.6-RC3, when register_globals is enabled, allows remote attackers to bypass authentication and gain administrative via unspecified cookies. NOTE: some of these details are obtained from third party information.Enginsight
Vendor | Product | Version |
---|---|---|
gallery | gallery | 𝑥 ≤ 1.5.9 |
gallery | gallery | 𝑥 ≤ 1.6 |
gallery | gallery | 1.2.1 |
gallery | gallery | 1.3.1 |
gallery | gallery | 1.3.2 |
gallery | gallery | 1.3.3 |
gallery | gallery | 1.3.4:pl1 |
gallery | gallery | 1.4 |
gallery | gallery | 1.4.1 |
gallery | gallery | 1.4.4 |
gallery | gallery | 1.4.4:pl2 |
gallery | gallery | 1.5.1:rc2 |
gallery | gallery | 1.5.2 |
gallery | gallery | 1.5.7 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References