Total vulnerabilities in the database
Directory traversal vulnerability in index.php in Crux Gallery 1.32 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the theme parameter.
Software | From | Fixed in |
---|---|---|
crux_software / gallery | 1.32 | 1.32.x |
crux_software / gallery | - | 1.32.x |
crux_software / gallery | 1.2 | 1.2.x |
crux_software / gallery | 1.0 | 1.0.x |
crux_software / gallery | 1.31 | 1.31.x |
crux_software / gallery | 1.1 | 1.1.x |
crux_software / gallery | 1.30 | 1.30.x |