VULNERABILITY INTELLIGENCE
CVE-2002-2123
CVSS score7.5 HIGH
EPSS probability2.36%
CISA KEVNot currently listed
Published2002-12-31
Last modified2026-06-16
Description
PHP remote file inclusion vulnerability in publish_xp_docs.php for Gallery 1.3.2 allows remote attackers to inject arbitrary PHP code by specifying a URL to an init.php file in the GALLERY_BASEDIR parameter.