CVE-2008-5296

Gallery <1.5.10, <1.6-RC3 - Auth Bypass

Title source: llm

Description

Gallery 1.5.x before 1.5.10 and 1.6 before 1.6-RC3, when register_globals is enabled, allows remote attackers to bypass authentication and gain administrative via unspecified cookies. NOTE: some of these details are obtained from third party information.

Scores

EPSS 0.0031
EPSS Percentile 53.5%

Classification

CWE
CWE-287
Status draft

Affected Products (14)

gallery/gallery < 1.5.9
gallery/gallery < 1.6
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery

Timeline

Published Dec 01, 2008
Tracked Since Feb 18, 2026