CVE-2008-7186
09.09.2009, 17:30
Coppermine Photo Gallery (CPG) 1.4.14 does not restrict access to update.php, which allows remote attackers to obtain sensitive information such as the database table prefix via a direct request. NOTE: this might be leveraged for attacks against CVE-2008-0504.Enginsight
Vendor | Product | Version |
---|---|---|
coppermine-gallery | coppermine_photo_gallery | 1.4.14 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References