Multiple PHP remote file inclusion vulnerabilities in Pixaria Gallery prior to 1.4.3 allow remote malicious users to execute arbitrary PHP code via a URL in the cfg[sys][base_path] parameter to psg.smarty.lib.php and certain include and library scripts, a different vector than CVE-2007-2457.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
pixaria pixaria gallery 1.2.1 |
||
pixaria pixaria gallery 1.0.5 |
||
pixaria pixaria gallery 1.1.1 |
||
pixaria pixaria gallery 1.4 |
||
pixaria pixaria gallery 1.1.5 |
||
pixaria pixaria gallery 1.1.6 |
||
pixaria pixaria gallery 1.3.3 |
||
pixaria pixaria gallery 1.2 |
||
pixaria pixaria gallery 1.0.3 |
||
pixaria pixaria gallery 1.3 |
||
pixaria pixaria gallery 1.1.3 |
||
pixaria pixaria gallery 1.4.1 |
||
pixaria pixaria gallery 1.4.2 |
||
pixaria pixaria gallery 1.1.4 |
||
pixaria pixaria gallery 1.0.2 |
||
pixaria pixaria gallery 1.0.4 |
||
pixaria pixaria gallery 1.3.1 |
||
pixaria pixaria gallery 1.1 |
||
pixaria pixaria gallery 1.1.2 |
||
pixaria pixaria gallery 1.3.2 |
||
pixaria pixaria gallery 1.0.1 |