Vulnerabilities (CVE)

Filtered by vendor Dutchmonkey Subscribe
Filtered by product Dm Album
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-2396 2 Dutchmonkey, Wordpress 2 Dm Album, Wordpress 2024-02-28 9.3 HIGH N/A
PHP remote file inclusion vulnerability in template/album.php in DM Albums 1.9.2, as used standalone or as a WordPress plugin, allows remote attackers to execute arbitrary PHP code via a URL in the SECURITY_FILE parameter.