Filtered by vendor Menalto Subscriptions
Total 23 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2008-2720 1 Menalto 1 Gallery 2025-04-09 N/A
Cross-site scripting (XSS) vulnerability in Menalto Gallery before 2.2.5 allows remote attackers to inject arbitrary web script or HTML via the (1) host and (2) path components of a URL.
CVE-2008-2722 1 Menalto 1 Gallery 2025-04-09 N/A
Menalto Gallery before 2.2.5 allows remote attackers to bypass permissions for sub-albums via a ZIP archive.
CVE-2007-6685 1 Menalto 1 Gallery Publish Xp Module 2025-04-09 N/A
Unspecified vulnerability in the Publish XP module Menalto Gallery before 2.2.4 allows attackers to create albums and upload files via unknown vectors.