Vulnerabilities > Mcgallery > Mcgallery

DATE CVE VULNERABILITY TITLE RISK
2007-03-16 CVE-2007-1478 Improper Input Validation vulnerability in Mcgallery 0.5B
download.php in McGallery 0.5b allows remote attackers to read arbitrary files and obtain script source code via the filename parameter.
network
low complexity
mcgallery CWE-20
5.0
2005-06-15 CVE-2005-1998 Unspecified vulnerability in Mcgallery 1.1
Directory traversal vulnerability in admin.php in McGallery 1.1 allows remote attackers to read arbitrary files via a ..
network
low complexity
mcgallery
5.0
2005-06-15 CVE-2005-1997 Information Disclosure vulnerability in Mcgallery 1.1
show.php in McGallery 1.1 allows remote attackers to connect to arbitrary databases, or gain sensitive information by triggering an error, via a modified host parameter.
network
low complexity
mcgallery
5.0