Synopsis
A web application running on the remote web server has a SQL injection vulnerability.
Description
The remote host is running Coppermine Gallery - a set of PHP scripts designed to handle galleries of pictures.
This product has a vulnerability which allows a remote attacker to execute arbitrary SQL queries.
Solution
Upgrade to Coppermine 1.1 beta 3 or later.
Plugin Details
File Name: coppermine_gallery_sql_injection.nasl
Supported Sensors: Nessus
Vulnerability Information
Exploit Ease: No exploit is required
Reference Information
BID: 7471