Vulnerabilities > Tinywebgallery > Tinywebgallery > High

DATE CVE VULNERABILITY TITLE RISK
2012-10-09 CVE-2012-5347 Remote Command Execution vulnerability in Tinywebgallery 1.8.3
TinyWebGallery 1.8.3 allows remote attackers to execute arbitrary code via shell metacharacters in the command parameter to (1) inc/filefunctions.inc or (2) info.php.
network
low complexity
tinywebgallery
7.5
2006-08-16 CVE-2006-4166 Remote Security vulnerability in Tinywebgallery
PHP remote file inclusion vulnerability in TinyWebGallery 1.5 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the image parameter to (1) image.php or (2) image.php2.
network
low complexity
tinywebgallery
7.5