Wabbit's vulnerability footprint centers on a narrowly scoped web-based gallery application written in PHP, reflecting the attack surface typical of user-facing media management interfaces. The observed weakness classifications remain broad, and current severity, exploitation, and exposure metrics are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wabbit over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-2098MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in showpic.php in Wabbit PHP Gallery 0.9 allow remote attackers to inject arbitrary web script or HTML via the (1) pic and (2) g | Apr 18, 2007 | 6.8 | 27 | NO | YES |
CVE-2006-6185MEDIUM Directory traversal vulnerability in script.php in Wabbit PHP Gallery 0.9 allows remote attackers to read arbitrary files via a .. (dot dot) in the dir parameter to index.php. | Dec 1, 2006 | 5.0 | 23 | NO | YES |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wabbit.
Media articles that mention a CVE ID that affects a product developed by Wabbit — matched by CVE ID, not by vendor name.