MG2 0.5.1 - Authentication Bypass

EDB-ID:

26436




Platform:

PHP

Date:

2005-10-29


source: https://www.securityfocus.com/bid/15235/info

MG2 is affected by an authentication bypass vulnerability. This issue can allow remote attackers to gain access to password protected image galleries.

All versions of MG2 are considered to be vulnerable at the moment. Minigal B13 is likely affected as well.

http://www.exmaple.com/mg2/index.php?list=*&page=all