Vulnonym.org

CVE-2008-2722 - Tawny Mounts

Description

Menalto Gallery before 2.2.5 allows remote attackers to bypass permissions for sub-albums via a ZIP archive.

Reference

http://gallery.menalto.com/gallery_2.2.5_released http://secunia.com/advisories/30650 http://secunia.com/advisories/30826 https://www.redhat.com/archives/fedora-package-announce/2008-June/msg00766.html http://www.securityfocus.com/bid/29681 https://www.redhat.com/archives/fedora-package-announce/2008-June/msg00836.html https://exchange.xforce.ibmcloud.com/vulnerabilities/43027