CVE · Critical

CVE-2013-3684 — Photo Gallery, Sliders, Proofing and Themes – NextGEN Gallery [nextgen-gallery] < 1.9.13

CVE Vulnerability Type Severity Affected Fixed in Published Status
CVE-2013-3684 Photo Gallery, Sliders, Proofing and Themes – NextGEN Gallery [nextgen-gallery] < 1.9.13 Unrestricted Upload of File with Dangerous Type Critical 9.8 < 1.9.13 1.9.13 2013-06-12

CVE-2013-3684

The NextGEN Gallery plugin versions before 1.9.13 contain a vulnerability that permits attackers to upload files of any type to the server without proper restrictions. This arbitrary file upload flaw can be exploited to compromise the affected system. Users should upgrade to version 1.9.13 or later to resolve this issue.

Based on public CVE data (MITRE/NVD).

Scan your WordPress site free

No signup, no credit card — enter your URL and get a security report in seconds.