Unrated severityNVD Advisory· Published Jun 16, 2008· Updated Apr 23, 2026
CVE-2008-2724
CVE-2008-2724
Description
Menalto Gallery before 2.2.5 does not enforce permissions for non-album items that have been protected by a password, which might allow remote attackers to bypass intended access restrictions.
Affected products
8cpe:2.3:a:menalto:gallery:2.1:*:*:*:*:*:*:*+ 7 more
- cpe:2.3:a:menalto:gallery:2.1:*:*:*:*:*:*:*
- cpe:2.3:a:menalto:gallery:2.1.1:*:*:*:*:*:*:*
- cpe:2.3:a:menalto:gallery:2.1.2:*:*:*:*:*:*:*
- cpe:2.3:a:menalto:gallery:2.2.0:*:*:*:*:*:*:*
- cpe:2.3:a:menalto:gallery:2.2.1:*:*:*:*:*:*:*
- cpe:2.3:a:menalto:gallery:2.2.2:*:*:*:*:*:*:*
- cpe:2.3:a:menalto:gallery:2.2.3:*:*:*:*:*:*:*
- cpe:2.3:a:menalto:gallery:2.2.4:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- secunia.com/advisories/30650nvdVendor Advisory
- gallery.menalto.com/gallery_2.2.5_releasednvd
- secunia.com/advisories/30826nvd
- www.securityfocus.com/bid/29681nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/43031nvd
- www.redhat.com/archives/fedora-package-announce/2008-June/msg00766.htmlnvd
- www.redhat.com/archives/fedora-package-announce/2008-June/msg00836.htmlnvd
News mentions
0No linked articles in our index yet.