Total vulnerabilities in the database
publish_xp_docs.php in Gallery 1.3.2 allows remote attackers to execute arbitrary PHP code by modifying the GALLERY_BASEDIR parameter to reference a URL on a remote web server that contains the code.
Software | From | Fixed in |
---|---|---|
gallery_project / gallery | 1.3.2 | 1.3.2.x |