← Back

CVE-2005-3764

nvd nist
Published: Nov 22, 2005Modified: Apr 16, 2026

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

The image gallery (imagegallery) component in Exponent CMS 0.96.3 and later versions does not properly check the MIME type of uploaded files, with unknown impact from the preview icon, possibly involving injection of HTML.

Affected (5)

Products: Exponent: Exponent
1 product
Exponent
Configuration A
5 vulnerable
Vulnerable SoftwareAffected Versions
Exponent
Version 0.94
Version 0.95
Version 0.96.1
Version 0.96.3
Version 0.96.4

References (4)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.