CVE-2008-6790

Minddezign Photo Gallery - Improper Input Validation

Title source: rule

Description

The admin module in MindDezign Photo Gallery 2.2 allows remote attackers to add administrative users and gain privileges via a modified username parameter in an edit account action to index.php.

Exploits (1)

exploitdb WORKING POC VERIFIED
by CWH Underground · perlwebappsphp
https://www.exploit-db.com/exploits/6820

Scores

EPSS 0.0312
EPSS Percentile 86.9%

Details

CWE
CWE-20
Status published
Products (1)
minddezign/photo_gallery 2.2
Published May 04, 2009
Tracked Since Feb 18, 2026