Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
imagely nextgen gallery vulnerabilities and exploits
(subscribe to this query)
10
CVSSv2
CVE-2013-3684
NextGEN Gallery plugin prior to 1.9.13 for WordPress: ngggallery.php file upload
Imagely Nextgen Gallery
1 EDB exploit
9
CVSSv2
CVE-2015-9228
In post-new.php in the Photocrati NextGEN Gallery plugin 2.1.10 for WordPress, unrestricted file upload is available via the name parameter, if a file extension is changed from .jpg to .php.
Imagely Nextgen Gallery 2.1.10
Imagely Nextgen Gallery 2.0.66.29
Imagely Nextgen Gallery 2.0.66.27
Imagely Nextgen Gallery 2.0.66.26
Imagely Nextgen Gallery 2.0.66.17
Imagely Nextgen Gallery 2.0.25
Imagely Nextgen Gallery 2.0.23
Imagely Nextgen Gallery 2.0.21
Imagely Nextgen Gallery 2.0.17
Imagely Nextgen Gallery 1.9.3
Imagely Nextgen Gallery 1.9.2
Imagely Nextgen Gallery 1.9.1
Imagely Nextgen Gallery 1.9.0
Imagely Nextgen Gallery 1.8.4
Imagely Nextgen Gallery 1.5.5
Imagely Nextgen Gallery 1.5.4
Imagely Nextgen Gallery 1.5.3
Imagely Nextgen Gallery 1.5.2
Imagely Nextgen Gallery 2.1.9
Imagely Nextgen Gallery 2.1.2
Imagely Nextgen Gallery 2.0.79
Imagely Nextgen Gallery 2.0.74
7.5
CVSSv2
CVE-2019-14314
A SQL injection vulnerability exists in the Imagely NextGEN Gallery plugin prior to 3.2.11 for WordPress. Successful exploitation of this vulnerability would allow a remote malicious user to execute arbitrary SQL commands on the affected system via modules/nextgen_gallery_display...
Imagely Nextgen Gallery
1 Github repository
7.5
CVSSv2
CVE-2016-10889
The nextgen-gallery plugin prior to 2.1.57 for WordPress has SQL injection via a gallery name.
Imagely Nextgen Gallery
6.8
CVSSv2
CVE-2020-35942
A Cross-Site Request Forgery (CSRF) issue in the NextGEN Gallery plugin prior to 3.5.0 for WordPress allows File Upload and Local File Inclusion via settings modification, leading to Remote Code Execution and XSS. (It is possible to bypass CSRF protection by simply not including ...
Imagely Nextgen Gallery
6.5
CVSSv2
CVE-2015-1784
In nextgen-galery wordpress plugin prior to 2.0.77.3 there are two vulnerabilities which can allow an malicious user to gain full access over the web application. The vulnerabilities lie in how the application validates user uploaded files and lack of security measures preventing...
Imagely Nextgen Gallery
6
CVSSv2
CVE-2016-6565
The Imagely NextGen Gallery plugin for Wordpress prior to version 2.1.57 does not properly validate user input in the cssfile parameter of a HTTP POST request, which may allow an authenticated user to read arbitrary files from the server, or execute arbitrary code on the server i...
Imagely Nextgen Gallery
5
CVSSv2
CVE-2013-0291
NextGEN Gallery Plugin for WordPress 1.9.10 and 1.9.11 has a Path Disclosure Vulnerability
Imagely Nextgen Gallery 1.9.10
Imagely Nextgen Gallery 1.9.11
1 EDB exploit
5
CVSSv2
CVE-2018-7586
In the nextgen-gallery plugin prior to 2.2.50 for WordPress, gallery paths are not secured.
Imagely Nextgen Gallery
4.3
CVSSv2
CVE-2015-1785
In nextgen-galery wordpress plugin prior to 2.0.77.3 there are two vulnerabilities which can allow an malicious user to gain full access over the web application. The vulnerabilities lie in how the application validates user uploaded files and lack of security measures preventing...
Imagely Nextgen Gallery
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
HTML injection
CVE-2024-35894
SQL
CVE-2024-5105
CVE-2014-100005
CVE-2024-35895
unauthorized
CVE-2024-22120
CVE-2024-35890
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
NEXT »