PT-2025-1366 · Unknown · Gallery Images Ape

Thiennv

·

Published

2025-01-02

·

Updated

2025-01-03

·

CVE-2022-41995

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
Name of the Vulnerable Software and Affected Versions Gallery Images Ape versions 2.2.8 and earlier
Description The issue is related to a Missing Authorization vulnerability in Galleryape Gallery Images Ape, which allows exploiting incorrectly configured access control security levels.
Recommendations For Gallery Images Ape versions 2.2.8 and earlier, update to a version later than 2.2.8 to resolve the issue. At the moment, there is no information about other specific mitigation measures for this vulnerability.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2022-41995

Affected Products

Gallery Images Ape