Cross-Site Scripting Vulnerabilities in Coppermine Photo Gallery by Coppermine
CVE-2015-6528

Currently unrated

Key Information:

Vendor
CVE Published:
20 August 2015

What is CVE-2015-6528?

The vulnerability allows remote attackers to exploit multiple cross-site scripting (XSS) flaws within the install_classic.php file of Coppermine Photo Gallery version 1.5.36. By manipulating the input parameters, including admin_username, admin_password, admin_email, dbserver, dbname, dbuser, dbpass, table_prefix, or impath, attackers can inject malicious web scripts or HTML. This could lead to unauthorized actions on behalf of users or compromise sensitive data by executing scripts in the context of the user's session.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.