yamamah CVE Vulnerabilities & CVE List (5)

Products (CPE): — CVEs: 5

yamamah vulnerability overview

Aggregates CVE and security vulnerability intelligence across all yamamah-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk path handling and vendor risk sql injection and related problems; some flaws may lead to vendor impact data exposure, affecting vendor surface production workloads scenarios.

Vulnerability distribution trend (last 24 months)

Showing 15 of 5 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2011-3823 Yamamah 1.0 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by themes/default/index.php and certain other files. [email protected] 5.0 0.33% 2011-09-24 2026-04-29
CVE-2010-2336 index.php in Yamamah Photo Gallery 1.00 allows remote attackers to obtain the source code of executable files within the web document root via the download parameter. [email protected] 5.0 2.03% 2010-06-18 2026-04-29
CVE-2010-2335 SQL injection vulnerability in index.php in Yamamah Photo Gallery 1.00, as distributed before 20100618, allows remote attackers to execute arbitrary SQL commands via the news parameter. [email protected] 7.5 0.32% 2010-06-18 2026-04-29
CVE-2010-2334 Directory traversal vulnerability in themes/default/download.php in Yamamah Photo Gallery 1.00, as distributed before 20100618, allows remote attackers to read arbitrary files via a .. (dot dot) in the download parameter. [email protected] 5.0 2.07% 2010-06-18 2026-04-29
CVE-2010-1300 SQL injection vulnerability in index.php in Yamamah (aka Dove Photo Album) 1.00 allows remote attackers to execute arbitrary SQL commands via the calbums parameter. [email protected] 7.5 3.44% 2010-04-07 2026-04-29
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence