Vulnerabilities > Dale Mooney

DATE CVE VULNERABILITY TITLE RISK
2007-08-31 CVE-2007-4612 Improper Input Validation vulnerability in Dale Mooney Contact Form
CRLF injection vulnerability in contact.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to add arbitrary mail headers via CRLF sequences in the subject parameter.
4.3
2007-08-31 CVE-2007-4611 SQL Injection vulnerability in Dale Mooney Calendar Events
SQL injection vulnerability in viewevent.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to execute arbitrary SQL commands via the id parameter.
network
low complexity
dale-mooney CWE-89
7.5
2007-08-31 CVE-2007-4610 Permissions, Privileges, and Access Controls vulnerability in Dale Mooney Moon Gallery
Unrestricted file upload vulnerability in config/upload.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to upload and execute arbitrary PHP files in images/, possibly related to config/admin.php.
6.8