Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Ivan Gallery Script Subscribe
Filtered by product Ivan Gallery Script
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-2072 1 Ivan Gallery Script 1 Ivan Gallery Script 2018-10-16 7.5 HIGH N/A
** DISPUTED ** PHP remote file inclusion vulnerability in index.php in Ivan Gallery Script 0.1 allows remote attackers to execute arbitrary PHP code via a URL in the dir parameter. NOTE: this issue has been disputed by third party researchers for 0.3, stating that the dir variable is properly initialized before use.
CVE-2007-2073 1 Ivan Gallery Script 1 Ivan Gallery Script 2008-11-12 7.5 HIGH N/A
PHP remote file inclusion vulnerability in index.php in Ivan Gallery Script 0.3 allows remote attackers to execute arbitrary PHP code via a URL in the gallery parameter in a new session.