CVE-2017-20250 PUBLISHED

WordPress Plugin Mac Photo Gallery 3.0 Arbitrary File Download

Assigner: VulnCheck
Reserved: 08.06.2026 Published: 09.06.2026 Updated: 09.06.2026

Mac Photo Gallery 3.0 contains a path traversal vulnerability that allows unauthenticated attackers to download arbitrary files by manipulating the albid parameter. Attackers can send requests to macdownload.php with directory traversal sequences to access sensitive files like wp-load.php outside the intended plugin directory.

Metrics

CVSS Vector: CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
CVSS Score: 8.7

Product Status

Vendor Apptha
Product Mac Photo Gallery
Versions
  • Version 3.0 is affected

Credits

  • Ihsan Sencan finder

References

Problem Types

  • Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') CWE