VYPR

Phpmygallery

by Phpmygallery

CVEs (5)

  • CVE-2008-6318Feb 27, 2009
    risk 0.03cvss epss 0.04

    PHP remote file inclusion vulnerability in _conf/_php-core/common-tpl-vars.php in PHPmyGallery 1.5 beta allows remote attackers to execute arbitrary PHP code via a URL in the admindir parameter, a different vector than CVE-2008-6317.

  • CVE-2008-6317Feb 27, 2009
    risk 0.03cvss epss 0.04

    Directory traversal vulnerability in _conf/_php-core/common-tpl-vars.php in PHPmyGallery 1.5 beta allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the conf[lang] parameter, a different issue than CVE-2008-6318. NOTE: this might be the same issue as CVE-2008-6316.

  • CVE-2008-6316Feb 27, 2009
    risk 0.03cvss epss 0.04

    Directory traversal vulnerability in _conf/core/common-tpl-vars.php in PHPmyGallery 1.0 beta2 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang parameter, a different issue than CVE-2008-6316 and a different vector than CVE-2008-6318.

  • CVE-2008-6315Feb 27, 2009
    risk 0.03cvss epss 0.04

    PHP remote file inclusion vulnerability in _conf/core/common-tpl-vars.php in PHPmyGallery 1.0 beta2 allows remote attackers to execute arbitrary PHP code via a URL in the confdir parameter, a different issue than CVE-2008-6316.

  • CVE-2008-5598Dec 16, 2008
    risk 0.03cvss epss 0.04

    Directory traversal vulnerability in index.php in PHPmyGallery 1.51 gold allows remote attackers to list arbitrary directories via a .. (dot dot) in the group parameter.