4.3
CVSSv2

CVE-2008-4591

Published: 16/10/2008 Updated: 29/09/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in admin/include/isadmin.inc.php in PhpWebGallery 1.3.4 allow remote malicious users to inject arbitrary web script or HTML via the (1) lang[access_forbiden] and (2) lang[ident_title] parameters.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

phpwebgallery phpwebgallery 1.3.4

Exploits

---------------------------------------------------------------- Script : PhpWebGallery 134 Type : Multiple Vulnerabilities (XSS/LFI) Rist : High Google Dork : inurl:"picturephp?cat=" "Powered by PhpWebGallery 134" ---------------------------------------------------------------- Download From : puzzledlsourceforgenet/sourceforg ...