Vulnerabilities (CVE)

Filtered by vendor Pixaria Subscribe
Filtered by product Pixaria Gallery
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-2457 1 Pixaria 1 Pixaria Gallery 2024-02-14 7.5 HIGH N/A
PHP remote file inclusion vulnerability in resources/includes/class.Smarty.php in Pixaria Gallery before 1.4.3 allows remote attackers to execute arbitrary PHP code via a URL in the cfg[sys][base_path] parameter.
CVE-2009-2922 1 Pixaria 1 Pixaria Gallery 2024-02-14 7.8 HIGH N/A
Absolute path traversal vulnerability in pixaria.image.php in Pixaria Gallery 2.0.0 through 2.3.5 allows remote attackers to read arbitrary files via a base64-encoded file parameter.
CVE-2007-2458 1 Pixaria 1 Pixaria Gallery 2024-02-14 7.5 HIGH N/A
Multiple PHP remote file inclusion vulnerabilities in Pixaria Gallery before 1.4.3 allow remote attackers to execute arbitrary PHP code via a URL in the cfg[sys][base_path] parameter to psg.smarty.lib.php and certain include and library scripts, a different vector than CVE-2007-2457.