CVE-2006-6246

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
04/12/2006
Last modified:
09/04/2025

Description

Photo Organizer 2.32b and earlier does not properly check the ownership of certain objects, which allows remote attackers to gain unauthorized access via vectors related to (1) camera del, (2) camera edit, (3) folder/album deletion, (4) photo.move, (5) content.indexer, (6) folder.content, and possibly other operations.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:photo_organizer:photo_organizer:*:*:*:*:*:*:*:* 2.32b (including)