CVE-2002-2130: High severity Gallery Project Gallery vulnerability
Published Dec 31, 2002
·Updated
publishxpdocs.php in Gallery 1.3.2 allows remote attackers to execute arbitrary PHP code by modifying the GALLERYBASEDIR parameter to reference a URL on a remote web server that contains the code.
Affected Software
1 affected component
Gallery Project Gallery=1.3.2
Remediation
Patch Available
Event History
Dec 31, 2002
CVE Published
05:00 AM
Data Sourced
via NVD·05:00 AM
RemedyDescriptionSeverityAffected Software
Nov 16, 2005
CVE Published
via MITRE·07:37 AM
Data Sourced
via MITRE·07:37 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2002-2130?
CVE-2002-2130 has a high severity level due to its ability to allow remote code execution on the affected system.
2
How do I fix CVE-2002-2130?
To fix CVE-2002-2130, upgrade Gallery to version 1.3.3 or later, which addresses this vulnerability.
3
What software is affected by CVE-2002-2130?
CVE-2002-2130 affects Gallery version 1.3.2.
4
What kind of attack can be executed via CVE-2002-2130?
CVE-2002-2130 allows attackers to execute arbitrary PHP code remotely by exploiting the GALLERY_BASEDIR parameter.
5
Is CVE-2002-2130 an old vulnerability?
Yes, CVE-2002-2130 is an old vulnerability first identified in 2002, but it can still pose risks if affected systems are in use.