Total vulnerabilities in the database
Directory traversal vulnerability in admin.php in McGallery 1.1 allows remote attackers to read arbitrary files via a .. (dot dot) in the lang parameter.
CVSS v2:
No CWE or OWASP classifications available.