CVE-2008-7187: Infoleak
Published Sep 9, 2009
·Updated
Coppermine Photo Gallery (CPG) 1.4.14 allows remote attackers to obtain sensitive information via a direct request to include/slideshow.inc.php, which leaks the installation path in an error message.
Affected Software
1 affected component
Coppermine-gallery Coppermine Photo Gallery=1.4.14
Remediation
Patch Available
Event History
Sep 9, 2009
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-7187?
CVE-2008-7187 has a moderate severity level as it exposes sensitive information through error messages.
2
How do I fix CVE-2008-7187?
To fix CVE-2008-7187, upgrade to Coppermine Photo Gallery version 1.4.15 or later where the vulnerability is addressed.
3
What impacts does CVE-2008-7187 have on vulnerable systems?
CVE-2008-7187 allows remote attackers to obtain sensitive installation path information, potentially aiding further exploitation.
4
Who is affected by CVE-2008-7187?
CVE-2008-7187 affects users of Coppermine Photo Gallery version 1.4.14.
5
Are there any known exploits for CVE-2008-7187?
Yes, there are known exploits that take advantage of CVE-2008-7187 to obtain sensitive information.