Vulnerabilities > Paul Griffin

DATE CVE VULNERABILITY TITLE RISK
2006-12-04 CVE-2006-6273 Unspecified vulnerability in Paul Griffin Simple PHP Gallery 1.1
sp_index.php in Simple PHP Gallery 1.1 allows remote attackers to obtain sensitive information via an invalid dir parameter, which reveals the path in an error message.
network
low complexity
paul-griffin
7.5
2006-12-04 CVE-2006-6272 Cross-Site Scripting vulnerability in Paul Griffin Simple PHP Gallery 1.1
Cross-site scripting (XSS) vulnerability in sp_index.php in Simple PHP Gallery 1.1 allows remote attackers to inject arbitrary web script or HTML via the dir parameter.
network
paul-griffin
6.8