VYPR

Dynamic Galerie

by Timobraun

CVEs (2)

  • CVE-2006-2295May 10, 2006
    risk 0.03cvss epss 0.03

    Directory traversal vulnerability in Dynamic Galerie 1.0 allows remote attackers to access arbitrary files via an absolute path in the pfad parameter to (1) index.php and (2) galerie.php.

  • CVE-2006-2294May 10, 2006
    risk 0.03cvss epss 0.02

    Cross-site scripting (XSS) vulnerability in Dynamic Galerie 1.0 allows remote attackers to inject arbitrary web script or HTML via the pfad parameter in (1) index.php and (2) galerie.php. NOTE: this issue might be resultant from directory traversal.