CVE-2006-3210

medium

Description

Ralf Image Gallery (RIG) 0.7.4 and other versions before 1.0, when register_globals is enabled, allows remote attackers to conduct PHP remote file inclusion and directory traversal attacks via URLs or ".." sequences in the (1) dir_abs_src parameter in (a) check_entry.php, (b) admin_album.php, (c) admin_image.php, and (d) admin_util.php; and the (2) dir_abs_admin_src parameter in admin_album.php and admin_image.php. NOTE: this issue can be leveraged to conduct cross-site scripting (XSS) attacks.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/27259

https://exchange.xforce.ibmcloud.com/vulnerabilities/27257

https://exchange.xforce.ibmcloud.com/vulnerabilities/27256

http://www.vupen.com/english/advisories/2006/2477

http://www.securityfocus.com/bid/18548

http://www.securityfocus.com/archive/1/438645/100/100/threaded

http://www.securityfocus.com/archive/1/437818/100/0/threaded

http://www.osvdb.org/26756

http://www.osvdb.org/26755

http://www.osvdb.org/26754

http://www.osvdb.org/26753

http://www.majorsecurity.de/advisory/major_rls18.txt

http://securityreason.com/securityalert/1136

http://secunia.com/advisories/20771

http://rig.powerpulsar.com/#news

Details

Source: Mitre, NVD

Published: 2006-06-24

Updated: 2026-06-16

Risk Information

CVSS v2

Base Score: 5.1

Vector: CVSS2#AV:N/AC:H/Au:N/C:P/I:P/A:P

Severity: Medium

CVSS v3

Base Score: 6.1

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Severity: Medium

EPSS

EPSS: 0.02538