CVE-2007-0122
Coppermine Photo Gallery 1.4.11 - SQL Injection
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
3Exploited in Wild
-Decision
Descriptions
Multiple SQL injection vulnerabilities in Coppermine Photo Gallery 1.4.10 and earlier allow remote authenticated administrators to execute arbitrary SQL commands via (1) the cat parameter to albmgr.php, and possibly (2) the gid parameter to usermgr.php; (3) the start parameter to db_ecard.php; and the albumid parameter to unspecified files, related to the (4) filename_to_title and (5) del_titles functions.
Múltiples vulnerabilidades de inyección SQL en Coppermine Photo Gallery 1.4.10 y anteriores permiten a administradores autenticados remotamente ejecutar comandos SQL de su elección a través del parámetro (1) cat de albmgr.php, y posiblemente (2) el parámetro gid de usermgr.php; (3) el parámetro start de db_ecard.php; y el parámetro albumid de archivos no especificados, relacionados con las funciones (4) filename_to_title y (5) del_titles.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2007-01-05 First Exploit
- 2007-01-08 CVE Reserved
- 2007-01-09 CVE Published
- 2023-10-05 EPSS Updated
- 2024-08-07 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
CAPEC
References (12)
URL | Tag | Source |
---|---|---|
http://acid-root.new.fr/poc/19070104.txt | X_refsource_misc | |
http://osvdb.org/35852 | Vdb Entry | |
http://osvdb.org/35853 | Vdb Entry | |
http://osvdb.org/35854 | Vdb Entry | |
http://osvdb.org/35855 | Vdb Entry | |
http://osvdb.org/35856 | Vdb Entry | |
http://secunia.com/advisories/25846 | Third Party Advisory | |
http://securityreason.com/securityalert/2123 | Third Party Advisory | |
http://www.securityfocus.com/archive/1/456051/100/0/threaded | Mailing List |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/29397 | 2007-01-05 | |
http://www.securityfocus.com/bid/21894 | 2024-08-07 | |
https://www.exploit-db.com/exploits/3085 | 2024-08-07 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Coppermine Search vendor "Coppermine" | Coppermine Photo Gallery Search vendor "Coppermine" for product "Coppermine Photo Gallery" | <= 1.4.10 Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version " <= 1.4.10" | - |
Affected
| ||||||
Coppermine Search vendor "Coppermine" | Coppermine Photo Gallery Search vendor "Coppermine" for product "Coppermine Photo Gallery" | 1.0 Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.0" | - |
Affected
| ||||||
Coppermine Search vendor "Coppermine" | Coppermine Photo Gallery Search vendor "Coppermine" for product "Coppermine Photo Gallery" | 1.0_rc3 Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.0_rc3" | - |
Affected
| ||||||
Coppermine Search vendor "Coppermine" | Coppermine Photo Gallery Search vendor "Coppermine" for product "Coppermine Photo Gallery" | 1.1 Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.1" | - |
Affected
| ||||||
Coppermine Search vendor "Coppermine" | Coppermine Photo Gallery Search vendor "Coppermine" for product "Coppermine Photo Gallery" | 1.1_beta_2 Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.1_beta_2" | - |
Affected
| ||||||
Coppermine Search vendor "Coppermine" | Coppermine Photo Gallery Search vendor "Coppermine" for product "Coppermine Photo Gallery" | 1.2 Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.2" | - |
Affected
| ||||||
Coppermine Search vendor "Coppermine" | Coppermine Photo Gallery Search vendor "Coppermine" for product "Coppermine Photo Gallery" | 1.2.1 Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.2.1" | - |
Affected
| ||||||
Coppermine Search vendor "Coppermine" | Coppermine Photo Gallery Search vendor "Coppermine" for product "Coppermine Photo Gallery" | 1.2.2_b Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.2.2_b" | - |
Affected
| ||||||
Coppermine Search vendor "Coppermine" | Coppermine Photo Gallery Search vendor "Coppermine" for product "Coppermine Photo Gallery" | 1.2.2_b-nuke Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.2.2_b-nuke" | - |
Affected
| ||||||
Coppermine Search vendor "Coppermine" | Coppermine Photo Gallery Search vendor "Coppermine" for product "Coppermine Photo Gallery" | 1.3 Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.3" | - |
Affected
| ||||||
Coppermine Search vendor "Coppermine" | Coppermine Photo Gallery Search vendor "Coppermine" for product "Coppermine Photo Gallery" | 1.3.2 Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.3.2" | - |
Affected
| ||||||
Coppermine Search vendor "Coppermine" | Coppermine Photo Gallery Search vendor "Coppermine" for product "Coppermine Photo Gallery" | 1.3.3 Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.3.3" | - |
Affected
| ||||||
Coppermine Search vendor "Coppermine" | Coppermine Photo Gallery Search vendor "Coppermine" for product "Coppermine Photo Gallery" | 1.3.4 Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.3.4" | - |
Affected
| ||||||
Coppermine Search vendor "Coppermine" | Coppermine Photo Gallery Search vendor "Coppermine" for product "Coppermine Photo Gallery" | 1.4.4 Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.4.4" | - |
Affected
| ||||||
Coppermine Search vendor "Coppermine" | Coppermine Photo Gallery Search vendor "Coppermine" for product "Coppermine Photo Gallery" | 1.4.9 Search vendor "Coppermine" for product "Coppermine Photo Gallery" and version "1.4.9" | - |
Affected
|