PublicDate: 2008-01-17 02:00:00 UTC Candidate: CVE-2007-6689 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-6689 Description: Menalto Gallery before 2.2.4 does not properly check for malicious file extensions during file uploads, which allows attackers to execute arbitrary code via the (1) Core application or (2) MIME module. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: Patches_gallery2: upstream_gallery2: released (2.2.4-1) dapper_gallery2: ignored (reached end-of-life) edgy_gallery2: needed (reached end-of-life) feisty_gallery2: needed (reached end-of-life) gutsy_gallery2: needed (reached end-of-life) hardy_gallery2: not-affected (2.2.4-1) intrepid_gallery2: not-affected (2.2.4-1) jaunty_gallery2: not-affected (2.2.4-1) karmic_gallery2: not-affected (2.2.4-1) devel_gallery2: not-affected (2.2.4-1) Patches_gallery: upstream_gallery: not-affected dapper_gallery: not-affected edgy_gallery: not-affected feisty_gallery: not-affected gutsy_gallery: not-affected hardy_gallery: not-affected intrepid_gallery: not-affected jaunty_gallery: not-affected karmic_gallery: not-affected devel_gallery: not-affected