| VID |
21415 |
| Severity |
30 |
| Port |
80, ... |
| Protocol |
TCP |
| Class |
CGI |
| Detailed Description |
The Gallery software, according to its version number, has an arbitrary HTML Injection Vulnerability. Bharat Mediratta Gallery is a Web-based software product that lets you manage photos on any Web site that offers PHP support. Gallery versions prior to 1.4.4-pl3 are vulnerable to arbitrary HTML and script code injection vulnerability. A remote attacker could create a specially crafted URL link containing embedded script, and then could persuade a target user to click it. Once the URL is clicked, the embedded script would be executed in the victim's Web browser within the security context of the hosting site. A remote attacker could use this vulnerability to steal the victim's cookie-based authentication credentials and to launch further attacks
* Note: This check solely relied on the version number of the remote Bharat Mediratta, Gallery software to assess this vulnerability, so this might be a false positive.
* References: http://secunia.com/advisories/13071/
* Platforms Affected: Bharat Mediratta, Gallery versions prior to 1.4.4-pl3 Linux Any version |
| Recommendation |
Upgrade to the latest version of Gallery (1.4.4-pl4 or later), available from the SourceForge Web site, Project: Gallery at http://sourceforge.net/projects/gallery
For Gentoo Linux: Upgrade to the latest version of Gallery (1.4.4_p4 or later), as listed in Gentoo Linux Security Advisory GLSA 200411-10 at http://www.gentoo.org/security/en/glsa/glsa-200411-10.xml |
| Related URL |
CVE-2004-1106 (CVE) |
| Related URL |
11602 (SecurityFocus) |
| Related URL |
17948 (ISS) |
|