Zenphoto

Zenphoto is a CMS for selfhosted gallery focused websites. Our focus lies on being easy to use and having all the features there when you need them. Zenphoto features support for various media formats and integrated blog and custom pages. Zenphoto is the ideal CMS for personal websites of illustrators artists designers photographers film makers and musicians.

Severity Summary:

High: 8 Medium: 23
Reference
Title
Severity
Zenphoto Improper Neutralization of Special Elements in Output Used by a Downstream Component (Injection) Vulnerability
High
Zenphoto Improper Privilege Management Vulnerability
High
Zenphoto Unrestricted Upload of File with Dangerous Type Vulnerability
High
Zenphoto Other Vulnerability
High
Zenphoto Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
High
Zenphoto Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
High
Zenphoto Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
High
Zenphoto Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
High
Zenphoto Improper Control of Generation of Code (Code Injection) Vulnerability
Medium
Zenphoto Other Vulnerability
Medium
Zenphoto Other Vulnerability
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
Zenphoto Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
Zenphoto Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
Zenphoto Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
Zenphoto Cross-Site Request Forgery (CSRF) Vulnerability
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium
Zenphoto Improper Neutralization of Input During Web Page Generation (Cross-site Scripting) Vulnerability
Medium