Vulnerabilities (CVE)

Filtered by vendor Yappa-ng Subscribe
Filtered by product Yappa-ng
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-5994 1 Yappa-ng 1 Yappa-ng 2024-02-04 6.8 MEDIUM N/A
PHP remote file inclusion vulnerability in check_noimage.php in Fritz Berger yet another php photo album - next generation (yappa-ng) 2.3.2 allows remote attackers to execute arbitrary PHP code via a URL in the config[path_src_include] parameter.
CVE-2005-1311 1 Yappa-ng 1 Yappa-ng 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in Yappa-NG before 2.3.2 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
CVE-2005-1312 1 Yappa-ng 1 Yappa-ng 2024-02-04 7.5 HIGH N/A
PHP remote file inclusion vulnerability in Yappa-NG before 2.3.2 allows remote attackers to execute arbitrary PHP code via unknown vectors.