Vulnerabilities > CVE-2005-0222 - Denial-Of-Service vulnerability in Gallery Project Gallery 2.0Alpha

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
low complexity
gallery-project
nessus

Summary

main.php in Gallery 2.0 Alpha allows remote attackers to gain sensitive information by changing the value of g2_subView parameter, which reveals the path in an error message.

Vulnerable Configurations

Part Description Count
Application
Gallery_Project
1

Nessus

NASL familyFreeBSD Local Security Checks
NASL idFREEBSD_PKG_5752A0DF60C54876A872F12F9A02FA05.NASL
descriptionGallery includes several cross-site scripting vulnerabilities that could allow malicious content to be injected.
last seen2020-06-01
modified2020-06-02
plugin id18940
published2005-07-13
reporterThis script is Copyright (C) 2005-2019 and is owned by Tenable, Inc. or an Affiliate thereof.
sourcehttps://www.tenable.com/plugins/nessus/18940
titleFreeBSD : gallery -- XSS (5752a0df-60c5-4876-a872-f12f9a02fa05)