relocate_server.php in Coppermine Photo Gallery (CPG) 1.4.2 and 1.4 beta is not removed after installation and does not use authentication, which allows remote attackers to obtain sensitive information, such as database configuration, via a direct request.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2005-12-03T19:00:00
Updated: 2024-08-07T23:31:48.890Z
Reserved: 2005-12-03T00:00:00
Link: CVE-2005-3979
Vulnrichment
No data.
NVD
Status : Modified
Published: 2005-12-03T19:03:00.000
Modified: 2024-11-21T00:03:12.447
Link: CVE-2005-3979
Redhat
No data.