|
Goollery contains a flaw that may allow an attacker to remotely execute arbitrary code. The issue is due to improper validation of user input passed to the viewpic.php page variable. It is possible that the flaw may allow the attacker to execute arbitrary HTML or script code in the victim's browser in the security context of the affected site, resulting in a loss of integrity.
|