Vulnerabilities
Vulnerable Software
Tftgallery:  Security Vulnerabilities
Cross-site scripting (XSS) vulnerability in settings.php in TFTgallery 0.13 allows remote attackers to inject arbitrary web script or HTML via the sample parameter.
CVSS Score
4.3
EPSS Score
0.013
Published
2009-11-09
Directory traversal vulnerability in index.php in TFTgallery 0.13 allows remote attackers to read arbitrary files via a ..%2F (encoded dot dot slash) in the album parameter.
CVSS Score
5.0
EPSS Score
0.031
Published
2009-11-09
Cross-site scripting (XSS) vulnerability in index.php in TFTgallery 0.13 allows remote attackers to inject arbitrary web script or HTML via the album parameter.
CVSS Score
4.3
EPSS Score
0.002
Published
2009-11-02


Contact Us

Shodan ® - All rights reserved