PHP remote file inclusion vulnerability in resources/includes/class.Smarty.php in Pixaria Gallery before 1.4.3 allows remote attackers to execute arbitrary PHP code via a URL in the cfg[sys][base_path] parameter.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.092
EPSS Ranking 92.4%