Pixaria's vulnerability footprint concentrates in its Gallery product, a niche image-management application where the durable signal centers on code-injection and path-traversal weaknesses that arise from unsafe dynamic code generation and insufficient pathname validation. These are foundational input-handling issues that merit attention in deployment contexts where the application processes untrusted content; current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Pixaria over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-2457HIGH PHP remote file inclusion vulnerability in resources/includes/class.Smarty.php in Pixaria Gallery before 1.4.3 allows remote attackers to execute arbitrary PHP code via a URL in th | May 2, 2007 | 7.5 | 33 | NO | YES |
CVE-2007-2458HIGH Multiple PHP remote file inclusion vulnerabilities in Pixaria Gallery before 1.4.3 allow remote attackers to execute arbitrary PHP code via a URL in the cfg[sys][base_path] paramet | May 2, 2007 | 7.5 | 32 | NO | YES |
CVE-2009-2922HIGH Absolute path traversal vulnerability in pixaria.image.php in Pixaria Gallery 2.0.0 through 2.3.5 allows remote attackers to read arbitrary files via a base64-encoded file paramete | Aug 21, 2009 | 7.8 | 29 | NO | YES |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Pixaria.
Media articles that mention a CVE ID that affects a product developed by Pixaria — matched by CVE ID, not by vendor name.