Lucene search

K
securityvulnsSecurityvulnsSECURITYVULNS:DOC:13109
HistoryJun 13, 2006 - 12:00 a.m.

[KAPDA::48]CopperminePhotoGallery1.4.8~ addhit() function~ SQLinjection attack

2006-06-1300:00:00
vulners.com
17

[ORIGINAL ADVISORY:]
http://myimei.com/security/2006-06-11/copperminephotogallery148-addhit-function-sqlinjection-attack.html
HTTP://KAPDA.IR

——-Summary——-
Software: CPG Coppermine Photo Gallery
Software’s Web Site: http://coppermine.sourceforge.net/
Versions: 1.4.8.stable
Class: Remote
Status: Unpatched
Exploit: Available
Solution: Available
Discovered by: imei addmimistrator
Risk Level: Mediume-High
——-Description——-
There is a security flaw in Coppermine Photo Gallery, one of popular photo galleries in internet, that
allows attacker perform an SQL INJECTION attack .

VISIT ORIGINAL ADVISORY FOR MORE DETAILES