VYPR

Rgallery Plugin

by Rgallery

CVEs (2)

  • CVE-2009-2311Jul 2, 2009
    risk 0.03cvss epss 0.00

    SQL injection vulnerability in the rGallery plugin 1.2.3 for WoltLab Burning Board (WBB3) allows remote attackers to execute arbitrary SQL commands via the userID parameter in the RGalleryUserGallery page to index.php, a different vector than CVE-2008-4627.

  • CVE-2008-4627Oct 21, 2008
    risk 0.03cvss epss 0.00

    SQL injection vulnerability in the rGallery plugin 1.09 for WoltLab Burning Board (WBB) allows remote attackers to execute arbitrary SQL commands via the itemID parameter in the RGalleryImageWrapper page in index.php.