VYPR
Unrated severityNVD Advisory· Published Feb 8, 2006· Updated Apr 16, 2026

CVE-2006-0587

CVE-2006-0587

Description

Unspecified vulnerability in util.php in Gallery before 1.5.2-pl2 allows remote authenticated users with trick an owner into modifying stored album data and possibly executing arbitrary code via unspecified vectors involving a crafted link to a crafted file.

Affected products

16
  • cpe:2.3:a:gallery_project:gallery:1.3.4:*:*:*:*:*:*:*+ 15 more
    • cpe:2.3:a:gallery_project:gallery:1.3.4:*:*:*:*:*:*:*
    • cpe:2.3:a:gallery_project:gallery:1.4:*:*:*:*:*:*:*
    • cpe:2.3:a:gallery_project:gallery:1.4.1:*:*:*:*:*:*:*
    • cpe:2.3:a:gallery_project:gallery:1.4.2:*:*:*:*:*:*:*
    • cpe:2.3:a:gallery_project:gallery:1.4.3_pl1:*:*:*:*:*:*:*
    • cpe:2.3:a:gallery_project:gallery:1.4.3_pl2:*:*:*:*:*:*:*
    • cpe:2.3:a:gallery_project:gallery:1.4.4_pl2:*:*:*:*:*:*:*
    • cpe:2.3:a:gallery_project:gallery:1.4.4_pl3:*:*:*:*:*:*:*
    • cpe:2.3:a:gallery_project:gallery:1.4.4_pl4:*:*:*:*:*:*:*
    • cpe:2.3:a:gallery_project:gallery:1.4.4_pl5:*:*:*:*:*:*:*
    • cpe:2.3:a:gallery_project:gallery:1.4_pl1:*:*:*:*:*:*:*
    • cpe:2.3:a:gallery_project:gallery:1.4_pl2:*:*:*:*:*:*:*
    • cpe:2.3:a:gallery_project:gallery:1.5:*:*:*:*:*:*:*
    • cpe:2.3:a:gallery_project:gallery:1.5.1:*:*:*:*:*:*:*
    • cpe:2.3:a:gallery_project:gallery:1.5.1_rc2:*:*:*:*:*:*:*
    • cpe:2.3:a:gallery_project:gallery:1.5.2_rc2:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

11

News mentions

0

No linked articles in our index yet.