Vulnerabilities (CVE)

Filtered by vendor Dmitry Sheiko Subscribe
Filtered by product Sapid Gallery
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-4065 1 Dmitry Sheiko 1 Sapid Gallery 2024-02-04 5.1 MEDIUM N/A
Multiple PHP remote file inclusion vulnerabilities in Dmitry Sheiko SAPID Gallery 1.0 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) root_path parameter to (a) usr/extensions/get_calendar.inc.php or the (2) GLOBALS[root_path] parameter to (b) usr/extensions/get_tree.inc.php.