Required CVE Record Information
Description
The installer for Gallery 2.0 before 2.0.2 stores the install log under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information.
References 3 Total
- securityfocus.com: 15614 vdb-entry
- securityfocus.com: 20051130 Gallery 2.x Security Advisory mailing-list
- vupen.com: ADV-2005-2681 vdb-entry
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 3 Total
- securityfocus.com: 15614 vdb-entryx_transferred
- securityfocus.com: 20051130 Gallery 2.x Security Advisory mailing-listx_transferred
- vupen.com: ADV-2005-2681 vdb-entryx_transferred