First published: Fri Mar 13 2009(Updated: )
SQL injection vulnerability in image_gallery.php in the Akira Powered Image Gallery (image_gallery) plugin 0.9.6.2 for e107 allows remote attackers to execute arbitrary SQL commands via the image parameter in an image-detail action.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
e107 CMS | ||
AkiraPowered Image Gallery | =0.9.6.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2008-6466 is considered moderate due to its potential for SQL injection.
To fix CVE-2008-6466, update the Akira Powered Image Gallery plugin to a version that does not contain the vulnerability.
CVE-2008-6466 specifically affects version 0.9.6.2 of the Akira Powered Image Gallery plugin.
CVE-2008-6466 is an SQL injection vulnerability that allows remote attackers to execute arbitrary SQL commands.
CVE-2008-6466 is found in the image_gallery.php file of the Akira Powered Image Gallery plugin for e107.