📦

my_egallery

Vendor: maxdev

Actively Exploited 0 CISA KEV List
PoC / Exploits 2 Code Available
Total RCEs 0 Remote Access
Total CVEs 4 Total Indexed
Avg. EPSS 1.05% Exploit Prob.
Latest CVE CVE-2008-7038 Aug 24

Security Vulnerability Index

Page 1 / 1
7.5 CVSS
CVE-2008-7038
Exploit Found

SQL injection vulnerability in the My_eGallery module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the gid parameter in a showgall action to modules.php. NOTE: this issue was disclosed by an unreliable researcher, so the details might be incorrect.

EPSS: 1.15%
7.5 CVSS
CVE-2009-0728
Exploit Found

SQL injection vulnerability in the My_eGallery module for MAXdev MDPro (MD-Pro) and Postnuke allows remote attackers to execute arbitrary SQL commands via the pid parameter in a showpic action to index.php.

EPSS: 0.95%