Dan Brown Moa Gallery vulnerabilities
2 known vulnerabilities affecting dan_brown/moa_gallery.
Total CVEs
2
CISA KEV
0
Public exploits
2
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2009-4614P3HIGHCVSS 7.5PoC≤ 1.2.02010-01-18
CVE-2009-4614 [HIGH] CWE-94 CVE-2009-4614: Multiple PHP remote file inclusion vulnerabilities in Moa Gallery 1.2.0 and earlier allow remote att
Multiple PHP remote file inclusion vulnerabilities in Moa Gallery 1.2.0 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the MOA_PATH parameter to (1) _error_funcs.php, (2) _integrity_funcs.php, (3) _template_component_admin.php, (4) _template_component_gallery.php, (5) _template_parser.php, (6) mod_gallery_funcs.php, (7) mod
nvd
CVE-2009-4627P4MEDIUMCVSS 5.0PoCv1.2.02010-01-18
CVE-2009-4627 [MEDIUM] CVE-2009-4627: Directory traversal vulnerability in sources/_template_parser.php in Moa Gallery 1.2.0 and earlier a
Directory traversal vulnerability in sources/_template_parser.php in Moa Gallery 1.2.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the p_filename parameter, a different issue than CVE-2009-4614.
nvd