Coppermine Photo Gallery before 1.5.36 allows remote attackers to enumerate directories via a full path in the folder parameter to minibrowser.php.
References
Configurations
Information
Published : 2015-06-10 11:59
Updated : 2016-12-30 18:59
NVD link : CVE-2015-3923
Mitre link : CVE-2015-3923
JSON object : View
CWE
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Products Affected
coppermine-gallery
- coppermine_photo_gallery