CVE-2015-9538
MEDIUMNextGEN Gallery < 2.1.15 - Path Traversal via Path Selection
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2015-9538.
PoCs published by Sathish Kumar, including Metasploit module auxiliary/scanner/http/wp_nextgen_galley_file_read.
AI-analyzed exploit summary This Metasploit module exploits an authenticated directory traversal vulnerability in WordPress NextGEN Gallery plugin version 2.1.7, allowing arbitrary directory reading with web server privileges. It requires valid WordPress credentials and leverages a nonce-based authentication mechanism.
Description
The NextGEN Gallery plugin before 2.1.15 for WordPress allows ../ Directory Traversal in path selection.
Exploits (1)
This Metasploit module exploits an authenticated directory traversal vulnerability in WordPress NextGEN Gallery plugin version 2.1.7, allowing arbitrary directory reading with web server privileges. It requires valid WordPress credentials and leverages a nonce-based authentication mechanism.
References (7)
Scores
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N