CVE-2017-20250

HIGH

WordPress Plugin Mac Photo Gallery 3.0 Arbitrary File Download

Title source: cna
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2017-20250. PoCs published by Ihsan Sencan.

AI-analyzed exploit summary This exploit demonstrates an arbitrary file download vulnerability in WordPress Plugin Mac Photo Gallery v3.0. The vulnerability allows an attacker to download sensitive files by manipulating the 'albid' parameter in the 'macdownload.php' script.

Description

Mac Photo Gallery 3.0 contains a path traversal vulnerability that allows unauthenticated attackers to download arbitrary files by manipulating the albid parameter. Attackers can send requests to macdownload.php with directory traversal sequences to access sensitive files like wp-load.php outside the intended plugin directory.

Exploits (1)

exploitdb WORKING POC
by Ihsan Sencan · textwebappsphp
https://www.exploit-db.com/exploits/41566

This exploit demonstrates an arbitrary file download vulnerability in WordPress Plugin Mac Photo Gallery v3.0. The vulnerability allows an attacker to download sensitive files by manipulating the 'albid' parameter in the 'macdownload.php' script.

Classification
Working Poc 90%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: WordPress Plugin Mac Photo Gallery v3.0
No auth needed
Prerequisites: Access to the target WordPress site with the vulnerable plugin installed
devstral-2 · analyzed Jun 09, 2026 Full analysis →

References (3)

Core 3
Core References
Exploit exploit
ExploitDB-41566
https://www.exploit-db.com/exploits/41566
Product product
Official Product Homepage
https://www.apptha.com/
Third Party Advisory third-party-advisory
VulnCheck Advisory: WordPress Plugin Mac Photo Gallery 3.0 Arbitrary File Download
https://www.vulncheck.com/advisories/wordpress-plugin-mac-photo-gallery-arbitrary-file-download

Scores

CVSS v3 7.5
EPSS 0.0064
EPSS Percentile 45.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-22
Status published
Products (1)
Apptha/Mac Photo Gallery 3.0
Published Jun 09, 2026
Tracked Since Jun 09, 2026