CVE-2015-9228

In post-new.php in the Photocrati NextGEN Gallery plugin 2.1.10 for WordPress, unrestricted file upload is available via the name parameter, if a file extension is changed from .jpg to .php.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
8.8 HIGH
NETWORK
LOW
LOW
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 89%
VendorProductVersion
imagelynextgen_gallery
1.5.0
imagelynextgen_gallery
1.5.1
imagelynextgen_gallery
1.5.2
imagelynextgen_gallery
1.5.3
imagelynextgen_gallery
1.5.4
imagelynextgen_gallery
1.5.5
imagelynextgen_gallery
1.6.0
imagelynextgen_gallery
1.6.1
imagelynextgen_gallery
1.6.2
imagelynextgen_gallery
1.7.0
imagelynextgen_gallery
1.7.1
imagelynextgen_gallery
1.7.2
imagelynextgen_gallery
1.7.3
imagelynextgen_gallery
1.7.4
imagelynextgen_gallery
1.8.0
imagelynextgen_gallery
1.8.1
imagelynextgen_gallery
1.8.2
imagelynextgen_gallery
1.8.3
imagelynextgen_gallery
1.8.4
imagelynextgen_gallery
1.9.0
imagelynextgen_gallery
1.9.1
imagelynextgen_gallery
1.9.2
imagelynextgen_gallery
1.9.3
imagelynextgen_gallery
1.9.5
imagelynextgen_gallery
1.9.6
imagelynextgen_gallery
1.9.7
imagelynextgen_gallery
1.9.8
imagelynextgen_gallery
1.9.10
imagelynextgen_gallery
1.9.11
imagelynextgen_gallery
1.9.12
imagelynextgen_gallery
1.9.13
imagelynextgen_gallery
2.0
imagelynextgen_gallery
2.0.7
imagelynextgen_gallery
2.0.11
imagelynextgen_gallery
2.0.14
imagelynextgen_gallery
2.0.17
imagelynextgen_gallery
2.0.21
imagelynextgen_gallery
2.0.23
imagelynextgen_gallery
2.0.25
imagelynextgen_gallery
2.0.27
imagelynextgen_gallery
2.0.30
imagelynextgen_gallery
2.0.31
imagelynextgen_gallery
2.0.33
imagelynextgen_gallery
2.0.40
imagelynextgen_gallery
2.0.57
imagelynextgen_gallery
2.0.58
imagelynextgen_gallery
2.0.59
imagelynextgen_gallery
2.0.61
imagelynextgen_gallery
2.0.63
imagelynextgen_gallery
2.0.65
imagelynextgen_gallery
2.0.66
imagelynextgen_gallery
2.0.66.16
imagelynextgen_gallery
2.0.66.17
imagelynextgen_gallery
2.0.66.26
imagelynextgen_gallery
2.0.66.27
imagelynextgen_gallery
2.0.66.29
imagelynextgen_gallery
2.0.66.31
imagelynextgen_gallery
2.0.66.33
imagelynextgen_gallery
2.0.71
imagelynextgen_gallery
2.0.74
imagelynextgen_gallery
2.0.76
imagelynextgen_gallery
2.0.77
imagelynextgen_gallery
2.0.78
imagelynextgen_gallery
2.0.78.1
imagelynextgen_gallery
2.0.79
imagelynextgen_gallery
2.1.0
imagelynextgen_gallery
2.1.2
imagelynextgen_gallery
2.1.7
imagelynextgen_gallery
2.1.9
imagelynextgen_gallery
2.1.10
𝑥
= Vulnerable software versions