Show filters
125 Total Results
Displaying 71-80 of 125
Sort by:
Attacker Value
Unknown
CVE-2008-3481
Disclosure Date: August 05, 2008 (last updated October 04, 2023)
themes/sample/theme.php in Coppermine Photo Gallery (CPG) 1.4.18 and earlier allows remote attackers to obtain sensitive information via a direct request, which reveals the installation path in an error message.
0
Attacker Value
Unknown
CVE-2008-2675
Disclosure Date: June 12, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in index.php in PHP Image Gallery allows remote attackers to inject arbitrary web script or HTML via the action parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown
CVE-2008-2347
Disclosure Date: May 20, 2008 (last updated October 04, 2023)
MyPicGallery 1.0 allows remote attackers to bypass application authentication and gain administrative access by setting the userID parameter to "admin" in a direct request to admin/addUser.php.
0
Attacker Value
Unknown
CVE-2008-1875
Disclosure Date: April 17, 2008 (last updated October 04, 2023)
SQL injection vulnerability in index.php in Terong PHP Photo Gallery (aka Advanced Web Photo Gallery) 1.0 allows remote attackers to execute arbitrary SQL commands via the photo_id parameter.
0
Attacker Value
Unknown
CVE-2008-1711
Disclosure Date: April 09, 2008 (last updated October 04, 2023)
Terong PHP Photo Gallery (aka Advanced Web Photo Gallery) 1.0 stores passwords in cleartext in a MySQL database, which allows context-dependent attackers to obtain sensitive information.
0
Attacker Value
Unknown
CVE-2008-1162
Disclosure Date: March 05, 2008 (last updated October 04, 2023)
SQL injection vulnerability in album.php in PHP WEB SCRIPT Dynamic Photo Gallery 1.02 allows remote attackers to execute arbitrary SQL commands via the albumID parameter.
0
Attacker Value
Unknown
CVE-2008-0504
Disclosure Date: January 31, 2008 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in Coppermine Photo Gallery (CPG) before 1.4.15 allow remote authenticated administrators to execute arbitrary SQL commands via the (1) albumid, (2) startpic, and (3) numpics parameters to util.php; and (4) cid_array parameter to reviewcom.php.
0
Attacker Value
Unknown
CVE-2008-0256
Disclosure Date: January 15, 2008 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in Matteo Binda ASP Photo Gallery 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to (a) Imgbig.asp, (b) thumb.asp, and (c) thumbricerca.asp and the (2) ricerca parameter to (d) thumbricerca.asp.
0
Attacker Value
Unknown
CVE-2007-6323
Disclosure Date: December 13, 2007 (last updated October 04, 2023)
Multiple directory traversal vulnerabilities in MMS Gallery PHP 1.0 allow remote attackers to read arbitrary files via a .. (dot dot) in the id parameter to (1) get_image.php or (2) get_file.php in mms_template/.
0
Attacker Value
Unknown
CVE-2007-5310
Disclosure Date: October 09, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in admin.wmtportfolio.php in the webmaster-tips.net wmtportfolio 1.0 (com_wmtportfolio) component for Joomla! allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter.
0