Search Results (23 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2008-2722 1 Menalto 1 Gallery 2025-04-09 N/A
Menalto Gallery before 2.2.5 allows remote attackers to bypass permissions for sub-albums via a ZIP archive.
CVE-2007-6688 1 Menalto 1 Gallery 2025-04-09 N/A
Unspecified vulnerability in the Installation application in Menalto Gallery before 2.2.4 has unknown impact and attack vectors related to "web-accessibility protection of the storage folder."
CVE-2007-6689 1 Menalto 1 Gallery 2025-04-09 N/A
Menalto Gallery before 2.2.4 does not properly check for malicious file extensions during file uploads, which allows attackers to execute arbitrary code via the (1) Core application or (2) MIME module.