Korean
<< Back
VID 21277
Severity 40
Port 80, ...
Protocol TCP
Class CGI
Detailed Description The Gallery software has a remote file include vulnerability(1) in the needinit.php script file.
Bharat Mediratta Gallery is a Web-based software product that lets you manage photos on any Web site that offers PHP support. Gallery version 1.2 and earlier could allow a remote attacker to include malicious PHP files, caused by a vulnerability in the needinit.php script. A remote attacker could send a specially-crafted URL request to the needinit.php script using the '?GALLERY_BASEDIR' variable that specifies a malicious PHP file from a remote system as a parameter, which would allow the attacker to execute arbitrary commands on the vulnerable Web server with the privileges of the Web server.

* References:
http://www.kb.cert.org/vuls/id/847803
http://archives.neohapsis.com/archives/bugtraq/2001-10/0012.html

* Platforms Affected:
Bharat Mediratta Gallery 1.2 and earlier
Linux Any version
Recommendation Upgrade to the latest version of Gallery (1.3.1 or later), available from the SourceForge Web site, Project: Gallery at http://sourceforge.net/projects/gallery
Related URL CVE-2001-1234 (CVE)
Related URL 3397 (SecurityFocus)
Related URL 7215 (ISS)