Vulnerabilities > Tinywebgallery > Tinywebgallery > High
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2012-10-09 | CVE-2012-5347 | Remote Command Execution vulnerability in Tinywebgallery 1.8.3 TinyWebGallery 1.8.3 allows remote attackers to execute arbitrary code via shell metacharacters in the command parameter to (1) inc/filefunctions.inc or (2) info.php. | 7.5 |
2006-08-16 | CVE-2006-4166 | Remote Security vulnerability in Tinywebgallery PHP remote file inclusion vulnerability in TinyWebGallery 1.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the image parameter to (1) image.php or (2) image.php2. | 7.5 |