CVE-2008-6990
Ezphotogallery - SQL Injection
Title source: ruleDescription
SQL injection vulnerability in gallery.php in Easy Photo Gallery (aka Ezphotogallery) 2.1 allows remote attackers to execute arbitrary SQL commands via the password parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Khashayar Fereidani · perlwebappsphp
https://www.exploit-db.com/exploits/6428
Scores
EPSS
0.0017
EPSS Percentile
38.6%
Details
CWE
CWE-89
Status
published
Products (1)
ezphotogallery/ezphotogallery
2.1
Published
Aug 19, 2009
Tracked Since
Feb 18, 2026