Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×
Gentoo Linux Security Advisory GLSA 200501-45
https://security.gentoo.org/
Severity: Low
Title: Gallery: Cross-site scripting vulnerability
Date: January 30, 2005
Bugs: #78522
ID: 200501-45
Synopsis
=======
Gallery is vulnerable to cross-site scripting attacks.
Background
=========
Gallery is a web application written in PHP which is used to organize
and publish photo albums. It allows multiple users to build and
maintain their own albums. It also supports the mirroring of images on
other servers.
Affected packages
================
-------------------------------------------------------------------
Package / Vulnerable / Unaffected
-------------------------------------------------------------------
1 www-apps/gallery <= 1.4.4_p4 >= 1.4.4_p5
==========
Rafel Ivgi has discovered a cross-site scripting vulnerability where
the 'username' parameter is n...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.