VYPR

Wabbit PHP Gallery

by Wabbit

CVEs (2)

  • CVE-2006-6185Dec 1, 2006
    risk 0.04cvss epss 0.13

    Directory traversal vulnerability in script.php in Wabbit PHP Gallery 0.9 allows remote attackers to read arbitrary files via a .. (dot dot) in the dir parameter to index.php.

  • CVE-2007-2098Apr 18, 2007
    risk 0.03cvss epss 0.06

    Multiple cross-site scripting (XSS) vulnerabilities in showpic.php in Wabbit PHP Gallery 0.9 allow remote attackers to inject arbitrary web script or HTML via the (1) pic and (2) gal parameters.