Seems to be a false positive:

http://seclists.org/bugtraq/2013/Jan/50
Cannot reproduce it on my site too. Also the google dork in the advisory is for nextgen-gallery
This commit is contained in:
Christian Mehlmauer
2013-01-11 21:40:01 +01:00
parent 9f53000e89
commit b9b86e18da

View File

@@ -923,11 +923,6 @@ File Upload Vulnerability</title>
<reference>http://www.exploit-db.com/exploits/18998/</reference> <reference>http://www.exploit-db.com/exploits/18998/</reference>
<type>UPLOAD</type> <type>UPLOAD</type>
</vulnerability> </vulnerability>
<vulnerability>
<title>Gallery 3.8.3 Arbitrary File Read</title>
<reference>http://packetstormsecurity.com/files/119458/wpgallery-fileread.txt</reference>
<type>LFI</type>
</vulnerability>
</plugin> </plugin>
<plugin name="font-uploader"> <plugin name="font-uploader">