Unrated severityNVD Advisory· Published Aug 27, 2003· Updated Apr 16, 2026
CVE-2003-0614
CVE-2003-0614
Description
Cross-site scripting (XSS) vulnerability in search.php of Gallery 1.1 through 1.3.4 allows remote attackers to insert arbitrary web script via the searchstring parameter.
Affected products
13cpe:2.3:a:gallery_project:gallery:1.1:*:*:*:*:*:*:*+ 12 more
- cpe:2.3:a:gallery_project:gallery:1.1:*:*:*:*:*:*:*
- cpe:2.3:a:gallery_project:gallery:1.2:*:*:*:*:*:*:*
- cpe:2.3:a:gallery_project:gallery:1.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:gallery_project:gallery:1.2.1_p1:*:*:*:*:*:*:*
- cpe:2.3:a:gallery_project:gallery:1.2.2:*:*:*:*:*:*:*
- cpe:2.3:a:gallery_project:gallery:1.2.3:*:*:*:*:*:*:*
- cpe:2.3:a:gallery_project:gallery:1.2.4:*:*:*:*:*:*:*
- cpe:2.3:a:gallery_project:gallery:1.2.5:*:*:*:*:*:*:*
- cpe:2.3:a:gallery_project:gallery:1.3:*:*:*:*:*:*:*
- cpe:2.3:a:gallery_project:gallery:1.3.1:*:*:*:*:*:*:*
- cpe:2.3:a:gallery_project:gallery:1.3.2:*:*:*:*:*:*:*
- cpe:2.3:a:gallery_project:gallery:1.3.3:*:*:*:*:*:*:*
- cpe:2.3:a:gallery_project:gallery:1.3.4:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
5News mentions
0No linked articles in our index yet.