Unrated severityNVD Advisory· Published May 2, 2005· Updated Jun 16, 2026
CVE-2005-0220
CVE-2005-0220
Description
Cross-site scripting vulnerability in login.php in Gallery 1.4.4-pl2 allows remote attackers to inject arbitrary web script or HTML via the username field.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2cpe:2.3:a:gallery_project:gallery:1.4.4_pl2:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:gallery_project:gallery:1.4.4_pl2:*:*:*:*:*:*:*
- (no CPE)range: = 1.4.4-pl2
Patches
Vulnerability mechanics
References
7- gallery.menalto.com/modules.phpnvdPatch
- secunia.com/advisories/13887/nvdPatch
- archives.neohapsis.com/archives/vulnwatch/2005-q1/0031.htmlnvdVendor Advisory
- theinsider.deep-ice.com/texts/advisory69.txtnvdVendor Advisory
- marc.infonvd
- www.gentoo.org/security/en/glsa/glsa-200501-45.xmlnvd
- exchange.xforce.ibmcloud.com/vulnerabilities/18938nvd
News mentions
0No linked articles in our index yet.