CVE-2005-1172: XSS
Cross-site scripting (XSS) vulnerability in init.inc.php in Coppermine Photo Gallery 1.3.x allows remote attackers to inject arbitrary web script or HTML via the X-Forwarded-For parameter.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-1172?
The severity of CVE-2005-1172 is considered high due to the potential for cross-site scripting (XSS) attacks.
How do I fix CVE-2005-1172?
To fix CVE-2005-1172, upgrade to the latest version of Coppermine Photo Gallery that addresses this vulnerability.
What type of attacks can be executed through CVE-2005-1172?
CVE-2005-1172 allows attackers to execute arbitrary web scripts or HTML code in the context of user sessions.
Which versions of Coppermine Photo Gallery are affected by CVE-2005-1172?
CVE-2005-1172 affects Coppermine Photo Gallery versions 1.0_rc3, 1.1_beta_2, 1.1_.0, 1.2, 1.2.1, 1.2.2_b, and 1.3.
Is there a patch available for CVE-2005-1172?
A patch is not specifically mentioned, so upgrading to a full version that resolves the vulnerability is the recommended action.