Record summary

CVE-2021-24970 has a selected CVSS score of 7.2 (high); EIP currently links 1 Nuclei template.

Description

The All-in-One Video Gallery WordPress plugin before 2.5.0 does not sanitise and validate the tab parameter before using it in a require statement in the admin dashboard, leading to a Local File Inclusion issue

Description source: CVE List

Exploitation context

Available material

Nuclei templates
1

Affected products and versions

1
ProductSourceVersion rangeStatus

All-in-One Video Gallery

CVE List2.5.0 to < 2.5.0affected

Nuclei templates

1
ProjectDiscoveryHIGHWordPress All-In-One Video Gallery <2.5.0 - Local File InclusionCVSS 7.2

WordPress All-in-One Video Gallery plugin before 2.5.0 is susceptible to local file inclusion. The plugin does not sanitize and validate the tab parameter before using it in a require statement in the admin dashboard. An attacker can possibly obtain sensitive information, modify data, and/or execute unauthorized administrative operations.

Impact

An attacker can exploit this vulnerability to read sensitive files on the server, potentially leading to unauthorized access or information disclosure.

Remediation

Fixed in version 2.5.4.

WeaknessesCWE-22
Authorsr3Y3r53
Template tagscve2021cvewpscanwpwp-pluginwordpresslfiauthenticatedplugins360vuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
CPE: cpe:2.3:a:plugins360:all-in-one_video_gallery:*:*:*:*:*:wordpress:*:*

Source: ProjectDiscovery

References

2