Vulnerability Database

296,362

Total vulnerabilities in the database

CVE-2008-4591

Multiple cross-site scripting (XSS) vulnerabilities in admin/include/isadmin.inc.php in PhpWebGallery 1.3.4 allow remote attackers to inject arbitrary web script or HTML via the (1) lang[access_forbiden] and (2) lang[ident_title] parameters.

  • Published: Oct 16, 2008
  • Updated: Apr 13, 2023
  • CVE: CVE-2008-4591
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 4.3
  • AV:N/AC:M/Au:N/C:N/I:P/A:N