Vulnerabilities > Gallery Project > Gallery > 1.5.2.rc2

DATE CVE VULNERABILITY TITLE RISK
2006-04-11 CVE-2006-1696 Cross-Site Scripting vulnerability in Gallery
Cross-site scripting (XSS) vulnerability in Gallery before 1.5.3 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors.
network
gallery-project
4.3
2006-01-21 CVE-2006-0330 HTML Injection vulnerability in Gallery User Name
Cross-site scripting (XSS) vulnerability in Gallery before 1.5.2 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors, possibly involving the user name (fullname).
network
gallery-project
4.3