The installer for Gallery 2.0 before 2.0.2 stores the install log under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-12-05 03:03
Updated : 2018-10-19 08:40
NVD link : CVE-2005-4021
Mitre link : CVE-2005-4021
JSON object : View
CWE
Products Affected
gallery_project
- gallery