Vulnerabilities > CVE-2005-2734 - Unspecified vulnerability in Gallery Project Gallery

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
NONE
network
gallery-project
nessus

Summary

Cross-site scripting (XSS) vulnerability in Gallery 1.5.1-RC2 and earlier allows remote attackers to inject arbitrary web script or HTML via EXIF data, such as the Camera Model Tag.

Nessus

  • NASL familyCGI abuses : XSS
    NASL idGALLERY_EXIF_XSS.NASL
    descriptionAccording to its banner, the version of Gallery hosted on the remote web server is prone to script insertion attacks because it does not sanitize malicious EXIF data stored in image files. Using a specially crafted image file, an attacker can exploit this flaw to cause arbitrary HTML and script code to be executed in a user
    last seen2020-06-01
    modified2020-06-02
    plugin id19512
    published2005-08-27
    reporterThis script is Copyright (C) 2005-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/19512
    titleGallery EXIF Data XSS
  • NASL familyDebian Local Security Checks
    NASL idDEBIAN_DSA-1148.NASL
    descriptionSeveral remote vulnerabilities have been discovered in gallery, a web-based photo album. The Common Vulnerabilities and Exposures project identifies the following problems : - CVE-2005-2734 A cross-site scripting vulnerability allows injection of web script code through HTML or EXIF information. - CVE-2006-0330 A cross-site scripting vulnerability in the user registration allows injection of web script code. - CVE-2006-4030 Missing input sanitising in the stats modules allows information disclosure.
    last seen2020-06-01
    modified2020-06-02
    plugin id22690
    published2006-10-14
    reporterThis script is Copyright (C) 2006-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/22690
    titleDebian DSA-1148-1 : gallery - several vulnerabilities