// For flags

CVE-2007-0122

Coppermine Photo Gallery 1.4.11 - SQL Injection

Severity Score

6.5
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

3
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Multiple SQL injection vulnerabilities in Coppermine Photo Gallery 1.4.10 and earlier allow remote authenticated administrators to execute arbitrary SQL commands via (1) the cat parameter to albmgr.php, and possibly (2) the gid parameter to usermgr.php; (3) the start parameter to db_ecard.php; and the albumid parameter to unspecified files, related to the (4) filename_to_title and (5) del_titles functions.

Múltiples vulnerabilidades de inyección SQL en Coppermine Photo Gallery 1.4.10 y anteriores permiten a administradores autenticados remotamente ejecutar comandos SQL de su elección a través del parámetro (1) cat de albmgr.php, y posiblemente (2) el parámetro gid de usermgr.php; (3) el parámetro start de db_ecard.php; y el parámetro albumid de archivos no especificados, relacionados con las funciones (4) filename_to_title y (5) del_titles.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
Single
Confidentiality
Partial
Integrity
Partial
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2007-01-05 First Exploit
  • 2007-01-08 CVE Reserved
  • 2007-01-09 CVE Published
  • 2023-10-05 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Coppermine
Search vendor "Coppermine"
Coppermine Photo Gallery
Search vendor "Coppermine" for product "Coppermine Photo Gallery"
<= 1.4.10
Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version " <= 1.4.10"
-
Affected
Coppermine
Search vendor "Coppermine"
Coppermine Photo Gallery
Search vendor "Coppermine" for product "Coppermine Photo Gallery"
1.0
Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.0"
-
Affected
Coppermine
Search vendor "Coppermine"
Coppermine Photo Gallery
Search vendor "Coppermine" for product "Coppermine Photo Gallery"
1.0_rc3
Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.0_rc3"
-
Affected
Coppermine
Search vendor "Coppermine"
Coppermine Photo Gallery
Search vendor "Coppermine" for product "Coppermine Photo Gallery"
1.1
Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.1"
-
Affected
Coppermine
Search vendor "Coppermine"
Coppermine Photo Gallery
Search vendor "Coppermine" for product "Coppermine Photo Gallery"
1.1_beta_2
Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.1_beta_2"
-
Affected
Coppermine
Search vendor "Coppermine"
Coppermine Photo Gallery
Search vendor "Coppermine" for product "Coppermine Photo Gallery"
1.2
Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.2"
-
Affected
Coppermine
Search vendor "Coppermine"
Coppermine Photo Gallery
Search vendor "Coppermine" for product "Coppermine Photo Gallery"
1.2.1
Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.2.1"
-
Affected
Coppermine
Search vendor "Coppermine"
Coppermine Photo Gallery
Search vendor "Coppermine" for product "Coppermine Photo Gallery"
1.2.2_b
Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.2.2_b"
-
Affected
Coppermine
Search vendor "Coppermine"
Coppermine Photo Gallery
Search vendor "Coppermine" for product "Coppermine Photo Gallery"
1.2.2_b-nuke
Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.2.2_b-nuke"
-
Affected
Coppermine
Search vendor "Coppermine"
Coppermine Photo Gallery
Search vendor "Coppermine" for product "Coppermine Photo Gallery"
1.3
Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.3"
-
Affected
Coppermine
Search vendor "Coppermine"
Coppermine Photo Gallery
Search vendor "Coppermine" for product "Coppermine Photo Gallery"
1.3.2
Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.3.2"
-
Affected
Coppermine
Search vendor "Coppermine"
Coppermine Photo Gallery
Search vendor "Coppermine" for product "Coppermine Photo Gallery"
1.3.3
Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.3.3"
-
Affected
Coppermine
Search vendor "Coppermine"
Coppermine Photo Gallery
Search vendor "Coppermine" for product "Coppermine Photo Gallery"
1.3.4
Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.3.4"
-
Affected
Coppermine
Search vendor "Coppermine"
Coppermine Photo Gallery
Search vendor "Coppermine" for product "Coppermine Photo Gallery"
1.4.4
Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.4.4"
-
Affected
Coppermine
Search vendor "Coppermine"
Coppermine Photo Gallery
Search vendor "Coppermine" for product "Coppermine Photo Gallery"
1.4.9
Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.4.9"
-
Affected