Contact | Site en Français               

 


 

Corporate Information

 
  About VUPEN Security

  Customers

  Job Openings
  Contact Us
 
   

   >> VUPEN Security - Vulnerabilities by Product


                                                                            

 

Gallery Vulnerabilities :


  01.12.2008 : Active Photo Gallery "username" and "password" SQL Injection Issue

  10.11.2008 : Gentoo Security Update Fixes Gallery Security Bypass Vulnerabilities

  23.06.2008 : Fedora Security Update Fixes Gallery Security Bypass Vulnerabilities

  19.05.2008 : GNU/Gallery "show" Parameter Local File Inclusion Vulnerability

  18.02.2008 : freePHPgallery "lang" Parameter Handling Local File Inclusion Issues

  13.02.2008 : Gentoo Security Update Fixes Gallery Multiple Remote Vulnerablities

  31.01.2008 : Coppermine Photo Gallery Code Execution and SQL Injection Issues

  31.01.2008 : fGallery Plugin for WordPress "album" SQL Query Injection Vulnerability

  21.01.2008 : Skype Video Gallery Browser Cross Zone Scripting Vulnerabilities

  31.12.2007 : Fedora Security Update Fixes Gallery Security Bypass Vulnerablities

  27.12.2007 : Gallery Multiple Security Bypass and Cross Site Scripting Vulnerablities

  19.11.2007 : Carousel Flash Image Gallery for Joomla PHP File Inclusion Vulnerability

  09.11.2007 : Debian Security Update Fixes Gallery Multiple Module Data Manipulation

  02.11.2007 : Gentoo Security Update Fixes Gallery Multiple Module Data Manipulation

  09.10.2007 : Flash Image Gallery for Joomla "mosConfig_live_site" File Inclusion Issue

  09.10.2007 : Directory Image Gallery "backwardDirectory" Cross Site Scripting Issue

  03.10.2007 : Original Photo Gallery "exif_prog" Remote Command Injection Vulnerability

  19.09.2007 : Coppermine Photo Gallery Cross Site Scripting and Local File Inclusion Issues

  18.09.2007 : TinyWebGallery URL Processing Client-Side Cross Site Scripting Issues

  06.09.2007 : Gallery WebDAV and Reupload Module Remote Data Manipulation Vulnerabilities

  07.08.2007 : Gallery In A Box "txtUsername" and "txtPassword" SQL Injection Vulnerabilities

  23.07.2007 : Pony Gallery Random Image for Joomla "catid" Remote SQL Injection Vulnerability

  04.06.2007 : Particle Gallery "editcomment" Parameter Handling Remote SQL Injection Vulnerability

  16.05.2007 : Media Gallery for Geeklog "_MG_CONF[path_html]" Remote File Inclusion Vulnerability

  14.05.2007 : R2K Gallery "lang2" Parameter Handling Arbitrary Local File Inclusion Vulnerability

  14.05.2007 : PinkCrow Designs Gallery "src" Parameter Handling Arbitrary File Download Vulnerability

  14.05.2007 : Snaps! Gallery Missing Authentication Check User Profile Manipulation Vulnerability

  11.05.2007 : Jimmac Original Photo Gallery "x[1]" Parameter Remote PHP File Inclusion Vulnerability

  07.05.2007 : Watermark for Gallery "GALLERY_BASEDIR" Remote PHP File Inclusion Vulnerability

  30.04.2007 : myGallery Plugin for Wordpress "myPath" Parameter Remote File Inclusion Vulnerability

  18.04.2007 : jGallery "G_JGALL[inc_path]" Parameter Handling Remote File Inclusion Vulnerability

  17.04.2007 : StoreFront for Gallery "GALLERY_BASEDIR" Parameter PHP File Inclusion Vulnerabilities

  16.04.2007 : Pixaria Gallery "cfg[sys][base_path]" Parameter Remote PHP File Inclusion Vulnerability

  12.04.2007 : zOOm Media Gallery for Mambo "mosConfig_absolute_path" File Inclusion Vulnerability

  11.04.2007 : phpGalleryScript "include_class" Parameter Remote PHP File Inclusion Vulnerability

  22.03.2007 : Active Photo Gallery "catid" Parameter Handling Remote SQL Query Injection Vulnerability

  19.03.2007 : MCGallery "filename" Parameter Handling Arbitrary File Download Vulnerability

  19.03.2007 : Absolute Image Gallery "categoryid" Parameter Remote SQL Query Injection Vulnerability

  26.02.2007 : XeroXer Simple One-file Gallery "f" Parameter Handling Cross Site Scripting Vulnerability

  26.02.2007 : CS-Gallery "album" Parameter Handling Remote PHP File Inclusion Vulnerability

  22.02.2007 : DBImageGallery "donsimg_base_path" Parameter Remote File Inclusion Vulnerabilities

  12.02.2007 : Quick Digital Image Gallery "Qwd" Parameter Handling Cross Site Scripting Vulnerability

  01.02.2007 : JV2 Folder Gallery "galleryfilesdir" Parameter Remote PHP File Inclusion Vulnerability

  15.01.2007 : J2V Folder Gallery "file" Parameter Handling Remote Directory Traversal Vulnerability

  09.01.2007 : Axiom Photo Gallery "baseAxiomPath" Parameter Remote File Inclusion Vulnerability

  02.01.2007 : IMGallery "users_adm/start1.php" Extension Handling Arbitrary File Upload Vulnerability

  28.11.2006 : ClickGallery Multiple Variable SQL Injection and Cross Site Scripting Vulnerabilities

  23.11.2006 : fipsGallery "which" Parameter Handling Remote SQL Query Injection Vulnerability

  21.11.2006 : Wabbit Gallery Script "dir" Parameter Handling Information Disclosure Vulnerability

  20.11.2006 : 20/20 Auto Gallery Multiple Parameter Handling Remote SQL Injection Vulnerabilities

  20.11.2006 : PHPQuickGallery "textFile" Parameter Handling PHP File Inclusion Vulnerability

  17.11.2006 : i-Gallery "d" and "myquery" Parameters Handling Cross Site Scripting Vulnerabilities

  29.10.2006 : Coppermine Photo Gallery "aid" Parameter Remote SQL Injection Vulnerability

  24.10.2006 : RMSOFT Gallery System "kw" Variable Handling Cross Site Scripting Vulnerability

  10.10.2006 : OpenDock Easy Gallery "doc_directory" Parameter File Inclusion Vulnerabilities

  05.10.2006 : GOOP Gallery "gallery" and "image" Variables Directory Traversal Vulnerability

  29.09.2006 : Skrypty PPA Gallery "config[ppa_root_path]" Remote File Inclusion Vulnerability

  28.09.2006 : Comdev Photo Gallery "path[docroot]" Parameter PHP File Inclusion Vulnerability

  11.09.2006 : MyABraCaDaWeb "base" Parameter Handling Remote File Inclusion Vulnerabilities

  11.09.2006 : mcGalleryPRO "path_to_folder" Parameter Remote File Inclusion Vulnerability

  10.08.2006 : Debian Security Update Fixes Gallery Cross Site Scripting and Information Disclosure Issues

  09.08.2006 : MojoGallery "username" and "password" Parameters Cross Site Scripting Vulnerabilities

  08.08.2006 : SAPID Gallery "root_path" Parameter Handling Remote PHP File Inclusion Vulnerability

  31.07.2006 : Gallery Manager (MGM) for Mambo "mosConfig_absolute_path" File Inclusion Vulnerability

  17.07.2006 : Francisco Charrua Photo-Gallery "id" Variable Handling Remote SQL Injection Vulnerability

  14.07.2006 : FlatNuke Gallery Module Arbitrary Image Upload and Code Execution Vulnerability

  05.07.2006 : PHPWebGallery "keyword" Parameter Handling Cross Site Scripting Vulnerability

  28.06.2006 : RsGallery2 for Joomla! "mosConfig_absolute_path" PHP File Inclusion Vulnerabilities

  21.06.2006 : Ralf Image Gallery "dir_abs_src" Parameter Handling File Inclusion Vulnerabilities

  21.06.2006 : IMGallery "start" and "sort" Variables Handling Remote SQL Injection Vulnerabilities

  13.06.2006 : Coppermine Photo Gallery "add_hit()" Function Remote SQL Injection Vulnerability

  13.06.2006 : ClickGallery Multiple Parameter Handling Cross Site Scripting Vulnerabilities

  13.06.2006 : Uphotogallery Multiple Parameter Handling Cross Site Scripting Vulnerabilities

  13.06.2006 : i-Gallery Multiple Variable Handling Client-Side Cross Site Scripting Vulnerabilities

  13.06.2006 : EZGallery Multiple Variable Handling Client-Side Cross Site Scripting Vulnerabilities

  13.06.2006 : fipsGallery "path" Parameter Handling Client-Side Cross Site Scripting Vulnerability

  13.06.2006 : Xtreme ASP Photo Gallery Multiple Parameter Cross Site Scripting Vulnerabilities

  07.06.2006 : Coppermine Photo Gallery "usermgr.php" Script Privilege Escalation Vulnerability

  07.06.2006 : Particle Gallery "imageid" Parameter Handling Cross Site Scripting Vulnerability

  05.06.2006 : Particle Gallery "imageid" Parameter Handling Remote SQL Injection Vulnerability

  22.05.2006 : Coppermine Photo Gallery File Extension Handling File Upload Vulnerability

  04.05.2006 : Invision Gallery "album" Parameter Handling Remote SQL Injection Vulnerability

  03.05.2006 : 321soft Php-Gallery Cross Site Scripting and Information Disclosure Vulnerability

  26.04.2006 : Instant Photo Gallery "id" Variable Handling Remote SQL Injection Vulnerability

  25.04.2006 : PhpWebGallery "cat" Parameter Handling Remote Pictures Disclosure Weakness

  20.04.2006 : EasyGallery "ordner" Parameter Handling Cross Site Scripting Vulnerability

  18.04.2006 : AnimeGenesis Gallery "cat" Variable Handling Cross Site Scripting Vulnerability

  18.04.2006 : Coppermine Photo Gallery "file" Parameter Local File Inclusion Vulnerability

  17.04.2006 : TinyWebGallery "twg_album" Variable Handling Cross Site Scripting Vulnerability

  12.04.2006 : Autogallery "pic" and "show" Variables Handling Cross Site Scripting Vulnerabilities

  11.04.2006 : PHPWebGallery Multiple Parameter Handling Cross Site Scripting Vulnerabilities

  10.04.2006 : Gallery Unspecified Parameter Handling Cross Site Scripting Vulnerabilities

  05.04.2006 : Crafty Syntax Image Gallery File Upload and SQL Injection Vulnerabilities

  04.04.2006 : Softbiz Image Gallery Script SQL Injection and Cross Site Scripting Vulnerabilities

  27.03.2006 : TFT Gallery "passwd" File Remote User Credentials Exposure Vulnerability

  27.03.2006 : Absolute Image Gallery XE "shownew" Variable Cross Site Scripting Vulnerability

  09.03.2006 : Gallery "stepOrder" Variable Local File Inclusion and Code Injection Issues

  03.03.2006 : Gallery Cross Site Scripting and Arbitrary File Manipulation Vulnerabilities

  22.02.2006 : Media Gallery Module for Geeklog SQL Injection and File Inclusion Issues

  20.02.2006 : Coppermine Photo Gallery Multiple Remote File Inclusion Vulnerabilities


Sort security advisories by Vendors

 

Copyright 2003-2008 © VUPEN.COM - Privacy Policy