VYPR

PAXXGallery

by Joomla

CVEs (2)

  • CVE-2008-5811Jan 2, 2009
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in the PaxGallery (com_paxgallery) component 0.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the gid parameter in a table action to index.php.

  • CVE-2008-0801Feb 15, 2008
    risk 0.03cvss epss 0.01

    SQL injection vulnerability in index.php in the PAXXGallery (com_paxxgallery) 0.2 component for Mambo and Joomla! allow remote attackers to execute arbitrary SQL commands via (1) the iid parameter in a view action, and possibly (2) the userid parameter.