# CVE-2003-1489

## Summary

- **CVE ID:** CVE-2003-1489
- **Severity:** UNKNOWN
- **CVSS Score:** 0.01
- **CWE:** N/A
- **Published:** Oct 24, 2007
- **Last Modified:** Mar 16, 2026

## Description

upload.php in Truegalerie 1.0 allows remote attackers to read arbitrary files by specifying the target filename in the file cookie in form.php, then downloading the file from the image gallery.

## Affected Products

- n/a — n/a (n/a)

## References

- [CNA](http://marc.info/?l=vulnwatch&m=105128431109082&w=2)
- [CNA](http://secunia.com/advisories/8683)

## Exploitation Prediction (EPSS)

- **EPSS Score:** 0.24%
- **EPSS Percentile:** 47.5

---
_Exported from OnDuty AI Vulnerability Intelligence on 2026-09-18._