First published: Wed Aug 16 2006(Updated: )
Unspecified vulnerability in the stats module in Gallery 1.5.1-RC2 and earlier allows remote attackers to obtain sensitive information via unspecified attack vectors, related to "two file exposure bugs."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
GalleryCMS | <=1.5.1_rc2 | |
GalleryCMS | =1.4 | |
GalleryCMS | =1.4.1 | |
GalleryCMS | =1.4.2 | |
GalleryCMS | =1.4.3_pl1 | |
GalleryCMS | =1.4.3_pl2 | |
GalleryCMS | =1.4.4_pl2 | |
GalleryCMS | =1.4.4_pl3 | |
GalleryCMS | =1.4.4_pl4 | |
GalleryCMS | =1.4.4_pl5 | |
GalleryCMS | =1.4_pl1 | |
GalleryCMS | =1.4_pl2 | |
GalleryCMS | =1.5 | |
GalleryCMS | =1.5.1 | |
GalleryCMS | =1.5_pl1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-4030 allows remote attackers to potentially obtain sensitive information from Gallery installations.
CVE-2006-4030 affects Gallery versions 1.4 to 1.5.1-RC2 inclusive.
To mitigate CVE-2006-4030, you should upgrade to a later, patched version of Gallery.
CVE-2006-4030 is related to unspecified attack vectors that exploit file exposure vulnerabilities.
The severity of CVE-2006-4030 can vary based on the specific environment but is generally considered a moderate risk due to information exposure.