Unrated severityNVD Advisory· Published Jun 16, 2008· Updated Apr 23, 2026
CVE-2008-2722
CVE-2008-2722
Description
Menalto Gallery before 2.2.5 allows remote attackers to bypass permissions for sub-albums via a ZIP archive.
Affected products
8cpe:2.3:a:menalto:gallery:*:*:*:*:*:*:*:*+ 7 more
- cpe:2.3:a:menalto:gallery:*:*:*:*:*:*:*:*range: <=2.2.4
- cpe:2.3:a:menalto:gallery:2.1:*:*:*:*:*:*:*
- cpe:2.3:a:menalto:gallery:2.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:menalto:gallery:2.1.2:*:*:*:*:*:*:*
- cpe:2.3:a:menalto:gallery:2.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:menalto:gallery:2.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:menalto:gallery:2.2.2:*:*:*:*:*:*:*
- cpe:2.3:a:menalto:gallery:2.2.3:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- secunia.com/advisories/30650nvdVendor Advisory
- gallery.menalto.com/gallery_2.2.5_releasednvd
- secunia.com/advisories/30826nvd
- www.securityfocus.com/bid/29681nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/43027nvd
- www.redhat.com/archives/fedora-package-announce/2008-June/msg00766.htmlnvd
- www.redhat.com/archives/fedora-package-announce/2008-June/msg00836.htmlnvd
News mentions
0No linked articles in our index yet.