CVE-2015-3922: Medium severity coppermine gallery vulnerability
Published May 27, 2015
·Updated
Open redirect vulnerability in mode.php in Coppermine Photo Gallery before 1.5.36 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the referer parameter.
Affected Software
1 affected component
Coppermine-gallery Coppermine Photo Gallery<=1.5.34
Event History
May 27, 2015
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-3922?
CVE-2015-3922 has a medium severity rating due to its potential for open redirect attacks.
2
How do I fix CVE-2015-3922?
To fix CVE-2015-3922, upgrade to Coppermine Photo Gallery version 1.5.36 or later.
3
What type of vulnerability is CVE-2015-3922?
CVE-2015-3922 is classified as an open redirect vulnerability.
4
What impact does CVE-2015-3922 have on users?
CVE-2015-3922 allows attackers to redirect users to arbitrary websites, which can lead to phishing attacks.
5
Which versions of Coppermine Photo Gallery are affected by CVE-2015-3922?
Coppermine Photo Gallery versions prior to 1.5.36 are affected by CVE-2015-3922.