Aggregates CVE and security vulnerability intelligence across all simple_image_gallery_web_app_project-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.
Common weakness patterns include vendor risk sql injection, with potential vendor impact data exposure across vendor surface production workloads and vendor surface software deployment use cases.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2023-27040 | Simple Image Gallery v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the username parameter. | [email protected] | 9.8 | 1.98% | 2023-03-16 | 2025-02-26 |
| CVE-2021-38819 | A SQL injection vulnerability exits on the Simple Image Gallery System 1.0 application through "id" parameter on the album page. | [email protected] | 8.8 | 0.91% | 2022-11-17 | 2025-04-30 |
| CVE-2021-38753 | An unrestricted file upload on Simple Image Gallery Web App can be exploited to upload a web shell and executed to gain unauthorized access to the server hosting the web app. | [email protected] | 9.8 | 1.46% | 2021-08-16 | 2024-11-21 |