Total vulnerabilities in the database
The URL rewrite module in Menalto Gallery before 2.2.4 allows attackers to include and execute arbitrary local files via unknown vectors related to the admin controller.
CVSS v2:
No CWE or OWASP classifications available.