Multiple cross-site scripting (XSS) vulnerabilities in Gallarific Free Edition allow remote attackers to inject arbitrary web script or HTML via (1) the e-mail address, (2) a comment, which is not properly handled during moderation, and (3) the tag parameter to gallery/tags.php.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2009-03-31T17:00:00Z

Updated: 2024-09-16T17:43:17.707Z

Reserved: 2009-03-31T00:00:00Z

Link: CVE-2008-6567

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2009-03-31T17:30:00.517

Modified: 2024-11-21T00:56:52.177

Link: CVE-2008-6567

cve-icon Redhat

No data.