[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[KAPDA::48]CopperminePhotoGallery1.4.8~ addhit() function~ SQLinjection attack
- To: bugtraq@xxxxxxxxxxxxxxxxx
- Subject: [KAPDA::48]CopperminePhotoGallery1.4.8~ addhit() function~ SQLinjection attack
- From: addmimistrator@xxxxxxxxx
- Date: 11 Jun 2006 15:32:39 -0000
[ORIGINAL ADVISORY:]
http://myimei.com/security/2006-06-11/copperminephotogallery148-addhit-function-sqlinjection-attack.html
HTTP://KAPDA.IR
??-Summary??-
Software: CPG Coppermine Photo Gallery
Software?s Web Site: http://coppermine.sourceforge.net/
Versions: 1.4.8.stable
Class: Remote
Status: Unpatched
Exploit: Available
Solution: Available
Discovered by: imei addmimistrator
Risk Level: Mediume-High
??-Description??-
There is a security flaw in Coppermine Photo Gallery, one of popular photo
galleries in internet, that allows attacker perform an SQL INJECTION attack .
VISIT ORIGINAL ADVISORY FOR MORE DETAILES