VYPR

Asp Photo Gallery

by Matteo Binda

CVEs (1)

  • CVE-2008-0256Jan 15, 2008
    risk 0.03cvss epss 0.01

    Multiple SQL injection vulnerabilities in Matteo Binda ASP Photo Gallery 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to (a) Imgbig.asp, (b) thumb.asp, and (c) thumbricerca.asp and the (2) ricerca parameter to (d) thumbricerca.asp.