Total
27 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2015-9538 | 1 Imagely | 1 Nextgen Gallery | 2024-11-21 | 4.0 MEDIUM | 6.5 MEDIUM |
The NextGEN Gallery plugin before 2.1.15 for WordPress allows ../ Directory Traversal in path selection. | |||||
CVE-2015-9537 | 1 Imagely | 1 Nextgen Gallery | 2024-11-21 | 3.5 LOW | 5.4 MEDIUM |
The NextGEN Gallery plugin before 2.1.10 for WordPress has multiple XSS issues involving thumbnail_width, thumbnail_height, thumbwidth, thumbheight, wmXpos, and wmYpos, and template. | |||||
CVE-2015-1785 | 1 Imagely | 1 Nextgen Gallery | 2024-11-21 | 4.3 MEDIUM | 6.5 MEDIUM |
In nextgen-galery wordpress plugin before 2.0.77.3 there are two vulnerabilities which can allow an attacker to gain full access over the web application. The vulnerabilities lie in how the application validates user uploaded files and lack of security measures preventing unwanted HTTP requests. | |||||
CVE-2015-1784 | 1 Imagely | 1 Nextgen Gallery | 2024-11-21 | 6.5 MEDIUM | 8.8 HIGH |
In nextgen-galery wordpress plugin before 2.0.77.3 there are two vulnerabilities which can allow an attacker to gain full access over the web application. The vulnerabilities lie in how the application validates user uploaded files and lack of security measures preventing unwanted HTTP requests. | |||||
CVE-2013-3684 | 1 Imagely | 1 Nextgen Gallery | 2024-11-21 | 10.0 HIGH | 9.8 CRITICAL |
NextGEN Gallery plugin before 1.9.13 for WordPress: ngggallery.php file upload | |||||
CVE-2013-0291 | 1 Imagely | 1 Nextgen Gallery | 2024-11-21 | 5.0 MEDIUM | 7.5 HIGH |
NextGEN Gallery Plugin for WordPress 1.9.10 and 1.9.11 has a Path Disclosure Vulnerability | |||||
CVE-2024-39627 | 1 Imagely | 1 Nextgen Gallery | 2024-09-11 | N/A | 4.8 MEDIUM |
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Imagely NextGEN Gallery allows Stored XSS.This issue affects NextGEN Gallery: from n/a through 3.59.3. |