VendorsPaul Griffinsimple_php_galleryall versions
Vulnerabilities

Paul Griffin Simple PHP Gallery

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2006-6273
sp_index.php in Simple PHP Gallery 1.1 allows remote attackers to obtain sensitive information via an invalid dir parameter, which reveals the path in an error message.
Published 2006-12-04 · Modified
7.5EPSS 0.015
CVE-2006-6272
Cross-site scripting (XSS) vulnerability in sp_index.php in Simple PHP Gallery 1.1 allows remote attackers to inject arbitrary web script or HTML via the dir parameter.
Published 2006-12-04 · Modified
6.81 PoCEPSS 0.018