|
|

CVE Reference: CVE-2005-2734 |
|
| NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE. | |
|
Original Page at CVE MITRE: CVE-2005-2734 |
|
|
Description: Cross-site scripting (XSS) vulnerability in Gallery 1.5.1-RC2 and earlier allows remote attackers to inject arbitrary web script or HTML via EXIF data, such as the Camera Model Tag. |
|
|
CVE Status: Candidate |
|
|
References: XF http://xforce.iss.net/xforce/xfdb/22020 ST 1014800 SAID Secunia Advisory: SA16594 Secunia Advisory: SA21502 MISC http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=325285 DEBIAN http://www.us.debian.org/security/2006/dsa-1148 CONFIRM http://sourceforge.net/project/shownotes.php?release_id=352576 BUGTRAQ http://marc.theaimsgroup.com/?l=bugtraq&m=112511025414488&w=2 BID 14668 |
|
| Return to the previous page. |
Not a customer already?Learn more about how our market leading Vulnerability Management solutions can help you manage risk and ensure compliance. |