CVE-2005-2734
published 2005-08-30CVE-2005-2734: Cross-site scripting (XSS) vulnerability in Gallery 1.5.1-RC2 and earlier allows remote attackers to inject arbitrary web script or HTML via EXIF data, such as…
PriorityP417medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EPSS
1.71%
74.6th percentile
Cross-site scripting (XSS) vulnerability in Gallery 1.5.1-RC2 and earlier allows remote attackers to inject arbitrary web script or HTML via EXIF data, such as the Camera Model Tag.
Affected
14 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| gallery_project | gallery | — | — |
| gallery_project | gallery | — | — |
| gallery_project | gallery | — | — |
| gallery_project | gallery | — | — |
| gallery_project | gallery | — | — |
| gallery_project | gallery | — | — |
| gallery_project | gallery | — | — |
| gallery_project | gallery | — | — |
| gallery_project | gallery | — | — |
| gallery_project | gallery | — | — |
| gallery_project | gallery | — | — |
| gallery_project | gallery | — | — |
| gallery_project | gallery | — | — |
| gallery_project | gallery | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=325285http://marc.info/?l=bugtraq&m=112511025414488&w=2http://secunia.com/advisories/16594/http://secunia.com/advisories/21502http://securitytracker.com/id?1014800http://sourceforge.net/project/shownotes.php?release_id=352576http://www.securityfocus.com/bid/14668http://www.us.debian.org/security/2006/dsa-1148https://exchange.xforce.ibmcloud.com/vulnerabilities/22020http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=325285http://marc.info/?l=bugtraq&m=112511025414488&w=2http://secunia.com/advisories/16594/http://secunia.com/advisories/21502http://securitytracker.com/id?1014800http://sourceforge.net/project/shownotes.php?release_id=352576http://www.securityfocus.com/bid/14668http://www.us.debian.org/security/2006/dsa-1148https://exchange.xforce.ibmcloud.com/vulnerabilities/22020
2005-08-30
Published