Korean
<< Back
VID 21415
Severity 30
Port 80, ...
Protocol TCP
Class CGI
Detailed Description The Gallery software, according to its version number, has an arbitrary HTML Injection Vulnerability.
Bharat Mediratta Gallery is a Web-based software product that lets you manage photos on any Web site that offers PHP support. Gallery versions prior to 1.4.4-pl3 are vulnerable to arbitrary HTML and script code injection vulnerability. A remote attacker could create a specially crafted URL link containing embedded script, and then could persuade a target user to click it. Once the URL is clicked, the embedded script would be executed in the victim's Web browser within the security context of the hosting site. A remote attacker could use this vulnerability to steal the victim's cookie-based authentication credentials and to launch further attacks

* Note: This check solely relied on the version number of the remote Bharat Mediratta, Gallery software to assess this vulnerability, so this might be a false positive.

* References:
http://secunia.com/advisories/13071/

* Platforms Affected:
Bharat Mediratta, Gallery versions prior to 1.4.4-pl3
Linux Any version
Recommendation Upgrade to the latest version of Gallery (1.4.4-pl4 or later), available from the SourceForge Web site, Project: Gallery at http://sourceforge.net/projects/gallery

For Gentoo Linux:
Upgrade to the latest version of Gallery (1.4.4_p4 or later), as listed in Gentoo Linux Security Advisory GLSA 200411-10 at http://www.gentoo.org/security/en/glsa/glsa-200411-10.xml
Related URL CVE-2004-1106 (CVE)
Related URL 11602 (SecurityFocus)
Related URL 17948 (ISS)