VendorsGallery Projectgallery2.0_rc2
Vulnerabilities

Gallery Project Gallery 2.0_rc2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2005-4023
Unspecified vulnerability in the zipcart module in Gallery 2.0 before 2.0.2 allows remote attackers to read arbitrary files via unknown vectors.
Published 2005-12-05 · Modified
5.0EPSS 0.014
CVE-2005-4021
The installer for Gallery 2.0 before 2.0.2 stores the install log under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information.
Published 2005-12-05 · Modified
5.0EPSS 0.014
CVE-2005-4022
Cross-site scripting (XSS) vulnerability in the "Add Image From Web" feature in Gallery 2.0 before 2.0.2 allows remote attackers to inject arbitrary web script or HTML via Javascript in an IMG tag.
Published 2005-12-05 · Modified
4.3EPSS 0.012