CVE

Id
24835  
CVE No.
CVE-2007-1478  
Status
Candidate  
Description
download.php in McGallery 0.5b allows remote attackers to read arbitrary files and obtain script source code via the filename parameter.  
Phase
Assigned (20070316)  
Votes
None (candidate not yet proposed)  
Comments