PT-2007-1381 · Unknown · Ezonlinegallery

Published

2007-03-03

·

Updated

2024-02-14

·

CVE-2006-7103

CVSS v2.0

6.4

Medium

VectorAV:N/AC:L/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions EZOnlineGallery versions 1.3 and earlier
Description The issue allows remote attackers to determine directory existence and read arbitrary image files due to multiple directory traversal vulnerabilities. This can be achieved by using a ".." in the album parameter in a show album action to "ezgallery.php", which produces different responses depending on existence, or by using a ".." in the album or image parameter to "image.php".
Recommendations For EZOnlineGallery versions 1.3 and earlier, update to version 1.3.2 Beta or later to resolve the issue. As a temporary workaround, consider restricting access to the "ezgallery.php" and "image.php" files to minimize the risk of exploitation. Avoid using the album and image parameters in the affected API endpoints until the issue is resolved.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-7103

Affected Products

Ezonlinegallery