Photo Organizer 2.32b and earlier does not properly check the ownership of certain objects, which allows remote attackers to gain unauthorized access via vectors related to (1) camera del, (2) camera edit, (3) folder/album deletion, (4) photo.move, (5) content.indexer, (6) folder.content, and possibly other operations.
References
Configurations
Information
Published : 2006-12-04 03:28
Updated : 2017-07-28 18:29
NVD link : CVE-2006-6246
Mitre link : CVE-2006-6246
JSON object : View
CWE
Products Affected
photo_organizer
- photo_organizer