Vulnerabilities > Coppermine > Coppermine Photo Gallery > 1.4.2
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2007-09-19 | CVE-2007-4977 | Cross-Site Scripting vulnerability in Coppermine Photo Gallery Cross-site scripting (XSS) vulnerability in mode.php in Coppermine Photo Gallery (CPG) 1.4.12 and earlier allows remote attackers to inject arbitrary web script or HTML via the referer parameter. | 3.5 |
2007-09-19 | CVE-2007-4976 | Path Traversal vulnerability in Coppermine Photo Gallery Directory traversal vulnerability in viewlog.php in Coppermine Photo Gallery (CPG) 1.4.12 and earlier allows remote authenticated administrators to include and execute arbitrary local files via a .. | 6.5 |
2006-06-12 | CVE-2006-2976 | Remote Security vulnerability in Coppermine Photo Gallery Unspecified vulnerability in usermgr.php in Coppermine Photo Gallery before 1.4.7 has unknown impact and remote attack vectors, possibly related to authorization/authentication errors. | 7.5 |
2006-05-22 | CVE-2006-2514 | File-Upload vulnerability in Coppermine Photo Gallery Coppermine galleries before 1.4.6, when running on Apache with mod_mime installed, allows remote attackers to upload arbitrary files via a filename with multiple file extensions. | 7.5 |