Vulnerabilities > Foss Gallery > Foss Gallery > 1.0

DATE CVE VULNERABILITY TITLE RISK
2008-10-09 CVE-2008-4509 Improper Input Validation vulnerability in Foss Gallery Foss Gallery 1.0
Unrestricted file upload vulnerability in processFiles.php in FOSS Gallery Admin and FOSS Gallery Public 1.0 beta allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in the root directory.
network
low complexity
foss-gallery CWE-20
critical
10.0