In nextgen-galery wordpress plugin before 2.0.77.3 there are two vulnerabilities which can allow an attacker to gain full access over the web application. The vulnerabilities lie in how the application validates user uploaded files and lack of security measures preventing unwanted HTTP requests.
Advisories
Source ID Title
EUVD EUVD EUVD-2015-1912 In nextgen-galery wordpress plugin before 2.0.77.3 there are two vulnerabilities which can allow an attacker to gain full access over the web application. The vulnerabilities lie in how the application validates user uploaded files and lack of security measures preventing unwanted HTTP requests.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Tue, 15 Jul 2025 13:45:00 +0000

Type Values Removed Values Added
Metrics epss

{'score': 0.00202}

epss

{'score': 0.00156}


cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-06T04:54:16.061Z

Reserved: 2015-02-17T00:00:00

Link: CVE-2015-1785

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2022-07-07T13:15:07.993

Modified: 2024-11-21T02:26:07.647

Link: CVE-2015-1785

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.