First published: Wed Sep 12 2007(Updated: )
Google Picasa allows remote attackers to read image files stored by Picasa via unspecified vectors involving a picasa:// URI. NOTE: this information is based upon a vague pre-advisory.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Google Products |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-4847 has a medium severity level due to the potential for remote attackers to access sensitive image files.
To mitigate CVE-2007-4847, ensure that you are using the latest version of Google Picasa and implement access controls for image files.
CVE-2007-4847 allows remote attackers to read image files stored by Picasa, which can lead to unauthorized access of personal images.
All versions of Google Picasa are potentially affected by CVE-2007-4847.
There are no specific public exploits for CVE-2007-4847, but the vulnerability allows attackers to exploit the picasa:// URI scheme.