relocate_server.php in Coppermine Photo Gallery (CPG) 1.4.2 and 1.4 beta is not removed after installation and does not use authentication, which allows remote attackers to obtain sensitive information, such as database configuration, via a direct request.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2005-12-03T19:00:00

Updated: 2024-08-07T23:31:48.890Z

Reserved: 2005-12-03T00:00:00

Link: CVE-2005-3979

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2005-12-03T19:03:00.000

Modified: 2019-07-16T19:37:18.437

Link: CVE-2005-3979

cve-icon Redhat

No data.