Photo Gallery by 10Web <= 1.5.24 - Authenticated Local File Inclusion
2019-05-15 00:00
AnonymousStrategic Overview
StatusPatched in 1.5.25
Affected PluginPhoto Gallery by 10Web – Mobile-Friendly Image Gallery
Affected Version
<= 1.5.24CVSS4.9Medium
CVE
CVE-2019-14798Vulnerability Overview
The 10Web Photo Gallery plugin before 1.5.25 for WordPress has Authenticated Local File Inclusion via directory traversal in the wp-admin/admin-ajax.php?action=shortcode_bwg tagtext parameter.
Technical Analysis
REMEDIATION: Update to version 1.5.25, or a newer patched version --- IDENTIFIER: CWE-98 (Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')) The PHP application receives input from an upstream component, but it does not restrict or incorrectly restricts the input before its usage in require, include, or similar functions.
External References
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C