vendor:
PHP Image Gallery
by:
Maghribi_WnaftakhaR
9.3
CVSS
HIGH
Softcomplex PHP Image Gallery v1.0 (Auth Bypass) SQL Injection Vulnerability
89
CWE
Product Name: PHP Image Gallery
Affected Version From: 1
Affected Version To: 1
Patch Exists: YES
Related CWE: CVE-2010-1490
CPE: a:softcomplex:php_image_gallery:1.0
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows, Linux, Mac
2010
Softcomplex PHP Image Gallery v1.0 (Auth Bypass) SQL Injection Vulnerability
Softcomplex PHP Image Gallery v1.0 is prone to an authentication-bypass vulnerability because the application fails to properly sanitize user-supplied input. An attacker can exploit this issue to gain unauthorized access to the application and modify data.
Mitigation:
Upgrade to the latest version of Softcomplex PHP Image Gallery v1.0