Vulnerabilities > Coppermine Gallery > Coppermine Photo Gallery > 1.4.25

DATE CVE VULNERABILITY TITLE RISK
2018-03-16 CVE-2014-4612 Cross-site Scripting vulnerability in Coppermine-Gallery Coppermine Photo Gallery
Cross-site scripting (XSS) vulnerability in the keywords manager (keywordmgr.php) in Coppermine Photo Gallery before 1.5.27 and 1.6.x before 1.6.01 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
low complexity
coppermine-gallery CWE-79
6.1
2011-01-11 CVE-2010-4693 Cross-Site Scripting vulnerability in Coppermine-Gallery Coppermine Photo Gallery
Multiple cross-site scripting (XSS) vulnerabilities in Coppermine Photo Gallery 1.5.10 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) h and (2) t parameters to help.php, or (3) picfile_XXX parameter to searchnew.php.
4.3