Better Fitness Limited Galleryit App Path Traversal Vulnerability

Vulnerability

A path traversal vulnerability has been identified in the Galleryit - Photo Vault, Album app by Better Fitness Limited, specifically in version 1.3.8.2 on Android. The issue arises from inadequate security validation during the file import process, allowing malicious applications to manipulate file names and contents. This exploitation can overwrite critical internal files within the app's storage, potentially leading to arbitrary code execution, unauthorized access to sensitive information, denial of service, and other serious security consequences.

Impact

Exploitation of this vulnerability allows for path traversal, enabling the overwriting of arbitrary files in the app's internal storage. This could disrupt the application's functionality, cause it to crash, or facilitate the execution of unauthorized code.

Reproduction

The vulnerability can be reproduced by sending an intent to the GalleryWelcomeActivity1 component of the Galleryit app. The intent must include a URI that traverses the file path to reach a target file within the app's shared preferences. This can be done using a malicious content provider that supplies the crafted URI, effectively overwriting the specified file with arbitrary data.

Added: Dec 15, 2025, 3:18 AM
Updated: Dec 15, 2025, 3:18 AM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
5.8
remediation
0.0
relevance
1.5
threat
6.4
urgency
2.9
incentive
0.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.