CVE-2021-24970
All-In-One-Gallery < 2.5.0 - Admin+ Local File Inclusion
Record summary
CVE-2021-24970 has a selected CVSS score of 7.2 (high); EIP currently links 1 Nuclei template.
Description
The All-in-One Video Gallery WordPress plugin before 2.5.0 does not sanitise and validate the tab parameter before using it in a require statement in the admin dashboard, leading to a Local File Inclusion issue
Exploitation context
Available material
- Nuclei templates
- 1
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
All-in-One Video Gallery | CVE List | 2.5.0 to < 2.5.0 | affected |
Nuclei templates
1ProjectDiscoveryHIGHWordPress All-In-One Video Gallery <2.5.0 - Local File InclusionCVSS 7.2
WordPress All-in-One Video Gallery plugin before 2.5.0 is susceptible to local file inclusion. The plugin does not sanitize and validate the tab parameter before using it in a require statement in the admin dashboard. An attacker can possibly obtain sensitive information, modify data, and/or execute unauthorized administrative operations.
Impact
An attacker can exploit this vulnerability to read sensitive files on the server, potentially leading to unauthorized access or information disclosure.
Remediation
Fixed in version 2.5.4.
Source: ProjectDiscovery