Apptha Slider Gallery Path Traversal Vulnerability Allowing Arbitrary File Download
Vulnerability
A path traversal vulnerability has been identified in the Apptha Slider Gallery WordPress plugin, affecting versions through 2.5. This vulnerability allows unauthorized users to traverse directories and access restricted files on the server, potentially leading to the download of sensitive information such as login credentials or backup files.
Impact
Exploitation of this vulnerability could result in arbitrary file downloads from the affected website, including sensitive files like login credentials or backups.
Remediation
Users of the Apptha Slider Gallery WordPress plugin are advised to update to version 2.5 or later. For those unable to update immediately, Patchstack offers a virtual patch that blocks attacks targeting this vulnerability.
Vulnerability Rating
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
