VYPR

Php Gallery

Sign in to watch

by 321soft

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2006-22100.030.01May 5, 2006Cross-site scripting (XSS) vulnerability in index.php in 321soft PhP-Gallery 0.9 allows remote attackers to inject arbitrary web script or HTML via the path parameter. NOTE: this issue might be resultant from the directory traversal vulnerability.
CVE-2006-22110.030.05May 5, 2006Absolute path traversal vulnerability in index.php in 321soft PhP-Gallery 0.9 allows remote attackers to browse arbitrary directories via the path parameter.