CVE Database /
CVE-2013-3684
CVE · Critical
CVE-2013-3684 — Photo Gallery, Sliders, Proofing and Themes – NextGEN Gallery [nextgen-gallery] < 1.9.13
| CVE |
Vulnerability |
Type |
Severity |
Affected |
Fixed in |
Published |
Status |
|
CVE-2013-3684
|
Photo Gallery, Sliders, Proofing and Themes – NextGEN Gallery [nextgen-gallery] < 1.9.13 |
Unrestricted Upload of File with Dangerous Type |
Critical
9.8
|
< 1.9.13
|
1.9.13 |
2013-06-12 |
—
|
CVE-2013-3684
The NextGEN Gallery plugin versions before 1.9.13 contain a vulnerability that permits attackers to upload files of any type to the server without proper restrictions. This arbitrary file upload flaw can be exploited to compromise the affected system. Users should upgrade to version 1.9.13 or later to resolve this issue.
Based on public CVE data (MITRE/NVD).
Scan your WordPress site free
No signup, no credit card — enter your URL and get a security report in seconds.
See the full security page for this plugin
Browse the CVE database
Browse all security findings