Vulnerabilities (CVE)

Filtered by vendor Carlos Eduardo Sotelo Pinto Subscribe
Filtered by product 0.1.0
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2010-1737 1 Carlos Eduardo Sotelo Pinto 1 0.1.0 2023-12-10 6.8 MEDIUM N/A
PHP remote file inclusion vulnerability in core/includes/gfw_smarty.php in Gallo 0.1.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary PHP code via a URL in the config[gfwroot] parameter.