Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2008-2723
embed.php in Menalto Gallery before 2.2.5 allows remote attackers to obtain the full path via unknown vectors related to "spoofing the remote address."
Exploit prediction scoring system (EPSS) score
EPSS Score
0.005
EPSS Ranking
65.7%
CVSS Severity
CVSS v2 Score
5.0
References
http://gallery.menalto.com/gallery_2.2.5_released
http://secunia.com/advisories/30650
http://secunia.com/advisories/30826
http://www.securityfocus.com/bid/29681
https://exchange.xforce.ibmcloud.com/vulnerabilities/43028
https://www.redhat.com/archives/fedora-package-announce/2008-June/msg00766.html
https://www.redhat.com/archives/fedora-package-announce/2008-June/msg00836.html
http://gallery.menalto.com/gallery_2.2.5_released
http://secunia.com/advisories/30650
http://secunia.com/advisories/30826
http://www.securityfocus.com/bid/29681
https://exchange.xforce.ibmcloud.com/vulnerabilities/43028
https://www.redhat.com/archives/fedora-package-announce/2008-June/msg00766.html
https://www.redhat.com/archives/fedora-package-announce/2008-June/msg00836.html
Products affected by CVE-2008-2723
Menalto
»
Gallery
»
Version:
1.5.7
cpe:2.3:a:menalto:gallery:1.5.7
Menalto
»
Gallery
»
Version:
1.6
cpe:2.3:a:menalto:gallery:1.6
Menalto
»
Gallery
»
Version:
2.1
cpe:2.3:a:menalto:gallery:2.1
Menalto
»
Gallery
»
Version:
2.1.1
cpe:2.3:a:menalto:gallery:2.1.1
Menalto
»
Gallery
»
Version:
2.1.2
cpe:2.3:a:menalto:gallery:2.1.2
Menalto
»
Gallery
»
Version:
2.2.0
cpe:2.3:a:menalto:gallery:2.2.0
Menalto
»
Gallery
»
Version:
2.2.1
cpe:2.3:a:menalto:gallery:2.2.1
Menalto
»
Gallery
»
Version:
2.2.2
cpe:2.3:a:menalto:gallery:2.2.2
Menalto
»
Gallery
»
Version:
2.2.3
cpe:2.3:a:menalto:gallery:2.2.3
Menalto
»
Gallery
»
Version:
2.2.4
cpe:2.3:a:menalto:gallery:2.2.4
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved