Arbitrary File Read Vulnerability in Truegalerie 1.0

Arbitrary File Read Vulnerability in Truegalerie 1.0

CVE-2003-1489 · MEDIUM Severity

AV:N/AC:L/AU:N/C:N/I:P/A:N

upload.php in Truegalerie 1.0 allows remote attackers to read arbitrary files by specifying the target filename in the file cookie in form.php, then downloading the file from the image gallery.

Learn more about our Web Application Penetration Testing UK.