4.3

CVE-2003-0614

Cross-site scripting (XSS) vulnerability in search.php of Gallery 1.1 through 1.3.4 allows remote attackers to insert arbitrary web script via the searchstring parameter.

Data is provided by the National Vulnerability Database (NVD)
Gallery ProjectGallery Version1.1
Gallery ProjectGallery Version1.2
Gallery ProjectGallery Version1.2.1
Gallery ProjectGallery Version1.2.1_p1
Gallery ProjectGallery Version1.2.2
Gallery ProjectGallery Version1.2.3
Gallery ProjectGallery Version1.2.4
Gallery ProjectGallery Version1.2.5
Gallery ProjectGallery Version1.3
Gallery ProjectGallery Version1.3.1
Gallery ProjectGallery Version1.3.2
Gallery ProjectGallery Version1.3.3
Gallery ProjectGallery Version1.3.4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 6.04% 0.897
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:P/A:N