Bugzilla – Bug 934346
VUL-1: CVE-2015-3923: coppermine: directory enumeration vulnerability
Last modified: 2015-06-16 13:11:40 UTC
Coppermine Photo Gallery before 1.5.36 allows remote attackers to enumerate directories via a full path in the folder parameter to minibrowser.php. This is a courtesy bug for server:php:applications/coppermine. Not in the distribution. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-3923 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-3923
bugbot adjusting priority
Build new package with request: #312223
This version has been accepted by myself: https://build.opensuse.org/package/show/server:php:applications/coppermine
nothing else to be done