CVE-2003-1227 | Gallery 1.4/1.4 Pl1 URL index.php GALLERY_BASEDIR code injection (EDB-23238 / Nessus ID 11876)
A vulnerability classified as critical has been found in Gallery 1.4/1.4 Pl1. This affects an unknown part of the file index.php of the component URL Handler. The manipulation of the argument GALLERY_BASEDIR leads to code injection.
This vulnerability is uniquely identified as CVE-2003-1227. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.