CVE-2008-0138 | xoops Xoopsgallery Module 1.3.3_9 mod_gallery GALLERY_BASEDIR sql injection (EDB-4847 / Nessus ID 29870)
A vulnerability was found in xoops Xoopsgallery Module 1.3.3_9. It has been classified as critical. This affects an unknown part of the component mod_gallery. The manipulation of the argument GALLERY_BASEDIR leads to sql injection.
This vulnerability is uniquely identified as CVE-2008-0138. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.