Description
Gallery - Private Photo Vault 1.0.41 starts an unauthenticated HTTP server that is reachable from the local network. The server listens on TCP port 8080 and serves files and directory listings from Android external storage.
Published: 2026-09-14
Score: 7.1 High
EPSS: < 1% Very Low
KEV: No
Impact: Confidentiality compromise through unauthenticated local‑network file exposure
Action: Immediate Patch
AI Analysis

Impact

Gallery – Private Photo Vault 1.0.41 launches an HTTP server that is not protected by any authentication mechanism and exposes the contents of the device’s external storage, providing directory listings and the ability to download any file located under that storage hierarchy. This flaw is a CWE‑552 (Unrestricted File Download) that allows an attacker to read arbitrary files, potentially containing personal photos, videos, or other sensitive data.

Affected Systems

Brain Trust’s Gallery – Private Photo Vault for Android, version 1.0.41, is affected when installed on a device that is accessible over a local network. No other versions are listed as vulnerable.

Risk and Exploitability

The CVSS score of 7.1 indicates a high severity. The EPSS score of < 1% suggests that exploitation probability is very low, and the vulnerability is not listed in the CISA KEV catalog. Because the server can be reached from any machine on the local network without authentication, an attacker with access to the same network can simply connect to the exposed port 8080 and retrieve files. The absence of a required authentication layer means the risk is high for devices on unsecured or shared networks, even though public exploitation evidence is lacking.

Generated by OpenCVE AI on September 20, 2026 at 22:49 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Update Gallery – Private Photo Vault to a version that removes or restricts the local HTTP server exposure.
  • Configure network or device firewall rules to block outbound traffic on port 8080 from the application, preventing accidental exposure to other local hosts.
  • If newer versions are unavailable, consider relocating the app’s data to a protected storage area or uninstalling the application to eliminate the vulnerability.

Generated by OpenCVE AI on September 20, 2026 at 22:49 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Description Gallery - Private Photo Vault 1.0.41 starts an unauthenticated HTTP server that is reachable from the local network. The server listens on TCP port 8080 and serves files and directory listings from Android external storage.
Title Gallery - Private Photo Vault 1.0.41 - Unauthenticated local-network HTTP file exposure
First Time appeared Brain Trust
Brain Trust gallery - Private Photo Vault
Weaknesses CWE-552
CPEs cpe:2.3:a:brain_trust:gallery_-_private_photo_vault:1.0.41:*:android:*:*:*:*:*
Vendors & Products Brain Trust
Brain Trust gallery - Private Photo Vault
References
Metrics cvssV4_0

{'score': 7.1, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Subscriptions

Brain Trust Gallery - Private Photo Vault
cve-icon MITRE

Status: PUBLISHED

Assigner: Fluid Attacks

Published:

Updated: 2026-09-14T19:04:22.864Z

Reserved: 2026-08-21T16:42:06.909Z

Link: CVE-2026-77884

cve-icon Vulnrichment

Updated: 2026-09-14T19:04:17.085Z

cve-icon NVD

Status : Deferred

Published: 2026-09-14T19:17:44.700

Modified: 2026-09-18T19:44:10.957

Link: CVE-2026-77884

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-20T23:00:07Z

Weaknesses
  • CWE-552

    Files or Directories Accessible to External Parties