CVE-2008-5296
Gallery <1.5.10, <1.6-RC3 - Auth Bypass
Title source: llmDescription
Gallery 1.5.x before 1.5.10 and 1.6 before 1.6-RC3, when register_globals is enabled, allows remote attackers to bypass authentication and gain administrative via unspecified cookies. NOTE: some of these details are obtained from third party information.
References (5)
Scores
EPSS
0.0031
EPSS Percentile
53.5%
Classification
CWE
CWE-287
Status
draft
Affected Products (14)
gallery/gallery
< 1.5.9
gallery/gallery
< 1.6
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
gallery/gallery
Timeline
Published
Dec 01, 2008
Tracked Since
Feb 18, 2026