Unrated severityNVD Advisory· Published Oct 2, 2001· Updated Jun 16, 2026
CVE-2001-1234
CVE-2001-1234
Description
Bharat Mediratta Gallery PHP script before 1.2.1 allows remote attackers to execute arbitrary code by including files from remote web sites via an HTTP request that modifies the includedir variable.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:gallery_project:gallery:1.1:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:gallery_project:gallery:1.1:*:*:*:*:*:*:*
- cpe:2.3:a:gallery_project:gallery:1.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:gallery_project:gallery:1.2:*:*:*:*:*:*:*
- (no CPE)range: <1.2.1
Patches
Vulnerability mechanics
References
5- www.iss.net/security_center/static/7215.phpnvdPatchVendor Advisory
- www.securityfocus.com/bid/3397nvdExploitVendor Advisory
- archives.neohapsis.com/archives/bugtraq/2001-10/0012.htmlnvd
- prdownloads.sourceforge.net/gallery/gallery-1.2.5.tar.gznvd
- www.osvdb.org/1967nvd
News mentions
0No linked articles in our index yet.