CVE-2008-7186 Information
Feb 14, 2021
cve
Description
Coppermine Photo Gallery (CPG) 1.4.14 does not restrict access to update.php which allows remote attackers to obtain sensitive information such as the database table prefix via a direct request. NOTE: this might be leveraged for attacks against CVE-2008-0504.
Reference
http://www.securityfocus.com/archive/1/487351/100/200/threaded http://www.securitytracker.com/id?1019285 http://www.vupen.com/english/advisories/2008/0367 http://www.waraxe.us/advisory-66.html
Share on: