Vulnerabilities > Phpmygallery

DATE CVE VULNERABILITY TITLE RISK
2009-02-27 CVE-2008-6318 Code Injection vulnerability in PHPmygallery 1.5
PHP remote file inclusion vulnerability in _conf/_php-core/common-tpl-vars.php in PHPmyGallery 1.5 beta allows remote attackers to execute arbitrary PHP code via a URL in the admindir parameter, a different vector than CVE-2008-6317.
network
low complexity
phpmygallery CWE-94
7.5
2009-02-27 CVE-2008-6317 Path Traversal vulnerability in PHPmygallery 1.5
Directory traversal vulnerability in _conf/_php-core/common-tpl-vars.php in PHPmyGallery 1.5 beta allows remote attackers to include and execute arbitrary local files via a ..
6.8
2009-02-27 CVE-2008-6316 Path Traversal vulnerability in PHPmygallery 1.0
Directory traversal vulnerability in _conf/core/common-tpl-vars.php in PHPmyGallery 1.0 beta2 allows remote attackers to include and execute arbitrary local files via a ..
6.8
2009-02-27 CVE-2008-6315 Code Injection vulnerability in PHPmygallery 1.0
PHP remote file inclusion vulnerability in _conf/core/common-tpl-vars.php in PHPmyGallery 1.0 beta2 allows remote attackers to execute arbitrary PHP code via a URL in the confdir parameter, a different issue than CVE-2008-6316.
network
low complexity
phpmygallery CWE-94
7.5
2008-12-16 CVE-2008-5598 Path Traversal vulnerability in PHPmygallery 1.51
Directory traversal vulnerability in index.php in PHPmyGallery 1.51 gold allows remote attackers to list arbitrary directories via a ..
network
low complexity
phpmygallery CWE-22
5.0