CVE-2006-2116

planetGallery - Privilege Escalation

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2006-2116. PoCs published by tugr@.

AI-analyzed exploit summary This is a writeup describing an authentication bypass vulnerability in PlanetGallery. The issue allows an attacker to gain admin access by directly accessing the admin panel URL without credentials.

Description

planetGallery allows remote attackers to gain administrator privileges via a direct request to admin/gallery_admin.php.

Exploits (1)

exploitdb WRITEUP VERIFIED
by tugr@ · textwebappsphp
https://www.exploit-db.com/exploits/27784

This is a writeup describing an authentication bypass vulnerability in PlanetGallery. The issue allows an attacker to gain admin access by directly accessing the admin panel URL without credentials.

Classification
Writeup 90%
Attack Type
Auth Bypass
Complexity
Trivial
Reliability
Reliable
Target: PlanetGallery (version not specified)
No auth needed
Prerequisites: Network access to the target application
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →

References (4)

Core 4
Core References
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/432576/100/0/threaded
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/17753
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/825

Scores

EPSS 0.0267
EPSS Percentile 84.2%

Details

Status published
Products (1)
planet_concept/planetgallery
Published May 01, 2006
Tracked Since Feb 18, 2026