Coppermine Photo Gallery Path Traversal Vulnerability

Vulnerability

A path traversal vulnerability has been identified in Coppermine Photo Gallery versions 1.6.09 through 1.6.27. This vulnerability allows unauthenticated remote attackers to exploit a vulnerable endpoint and create payloads that read the contents of any file accessible by the web server process. The issue has been resolved in version 1.6.28.

Impact

Exploitation of this vulnerability could lead to unauthorized access to sensitive files on the server.

Remediation

Users can upgrade to Coppermine Photo Gallery version 1.6.28 to address this vulnerability.

Added: Mar 11, 2026, 3:19 PM
Updated: Mar 11, 2026, 3:19 PM

Vulnerability Rating

Custom Algorithm
spread
5.2
impact
2.5
exploitability
7.6
remediation
7.7
relevance
3.8
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.