Photo Organizer 2.32b and earlier does not properly check the ownership of certain objects, which allows remote attackers to gain unauthorized access via vectors related to (1) camera del, (2) camera edit, (3) folder/album deletion, (4) photo.move, (5) content.indexer, (6) folder.content, and possibly other operations.
References
Configurations
History
No history.
Information
Published : 2006-12-04 11:28
Updated : 2025-04-09 00:30
NVD link : CVE-2006-6246
Mitre link : CVE-2006-6246
CVE.ORG link : CVE-2006-6246
JSON object : View
Products Affected
photo_organizer
- photo_organizer
CWE