Yamamah Photo Gallery 1.1 - Database Information Disclosure



EKU-ID: 41802 CVE: OSVDB-ID:
Author: L3b-r1'z Published: 2012-05-28 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/53709/info

Yamamah Photo Gallery is prone to an information-disclosure vulnerability.

An attacker can exploit this issue to download the database that contain sensitive information. Information harvested may aid in launching further attacks.

Yamamah 1.1.0 is vulnerable; other versions may also be affected.

http://www.example.com/yamamah/cp/export.php