Nessus Plugin #15192

Plugin Index

Note: This file has been created from a downloaded version of the Nessus Plugins from http://www.nessus.org/. Therefore, the information here can be outdated.

[DSA355] DSA-355-1 gallery

Family:
Debian Local Security Checks
Category:
infos
Copyright:
This script is (C) 2004 Michel Arboi
Summary:
DSA-355-1 gallery
Version:
$Revision: 1.4 $
Cve_id:
CAN-2003-0614
Bugtraq_id:
8288
Xrefs:
DSA:355
Description:

Larry Nguyen discovered a cross site scripting vulnerability in gallery,
a web-based photo album written in php. This security flaw can allow a
malicious user to craft a URL that executes Javascript code on your
website.
For the current stable distribution (woody) this problem has been fixed
in version 1.25-8woody1.
For the unstable distribution (sid) this problem has been fixed in
version 1.3.4-3.
We recommend that you update your gallery package.


Solution : http://www.debian.org/security/2003/dsa-355
Risk factor : High
Generiert am 27.04.2005 um 18:49:54 Uhr.