SQL injection vulnerability in the My_eGallery module for PHP-Nuke allows remote malicious users to execute arbitrary SQL commands via the gid parameter in a showgall action to modules.php. NOTE: this issue was disclosed by an unreliable researcher, so the details might be incorrect.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
maxdev my_egallery - |