Security Advisory

CVE-2019-14798

4.9
MEDIUM

Vulnerability Description

The 10Web Photo Gallery plugin before 1.5.25 for WordPress has Authenticated Local File Inclusion via directory traversal in the wp-admin/admin-ajax.php?action=shortcode_bwg tagtext parameter.
Published Date August 9, 2019
Official Source NIST NVD Advisory