Dale Mooney develops a modestly scoped suite of web-based tools including calendar events, contact forms, and image galleries, with a vulnerability profile centered on application-layer input-handling issues such as improper input validation and SQL injection. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Dale Mooney over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-4611HIGH SQL injection vulnerability in viewevent.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to execute arbitrary SQL commands via the id parameter. | Aug 31, 2007 | 7.5 | 28 | NO | YES |
CVE-2007-4610MEDIUM Unrestricted file upload vulnerability in config/upload.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to upload and execute arbitrary PHP files in images/, poss | Aug 31, 2007 | 6.8 | 18 | NO | NO |
CVE-2007-4612MEDIUM CRLF injection vulnerability in contact.php in Moonware (aka Dale Mooney Gallery) allows remote attackers to add arbitrary mail headers via CRLF sequences in the subject parameter. | Aug 31, 2007 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Dale Mooney.
Media articles that mention a CVE ID that affects a product developed by Dale Mooney — matched by CVE ID, not by vendor name.