CVE Vulnerabilities

CVE-2013-5962

Published: Sep 30, 2013 | Modified: Apr 11, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.1 MEDIUM
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Unrestricted file upload vulnerability in frames/upload-images.php in the Complete Gallery Manager plugin before 3.3.4 rev40279 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in wp-content/[year]/[month]/.

Affected Software

NameVendorStart VersionEnd Version
Complete_gallery_manager_pluginEnvato*3.3.3 (including)
Complete_gallery_manager_pluginEnvato1.0.0-rev25273 (including)1.0.0-rev25273 (including)
Complete_gallery_manager_pluginEnvato1.0.1-rev25421 (including)1.0.1-rev25421 (including)
Complete_gallery_manager_pluginEnvato1.0.2-rev25487 (including)1.0.2-rev25487 (including)
Complete_gallery_manager_pluginEnvato2.0.0-rev27524 (including)2.0.0-rev27524 (including)
Complete_gallery_manager_pluginEnvato2.0.1-rev27876 (including)2.0.1-rev27876 (including)
Complete_gallery_manager_pluginEnvato2.0.2-rev28693 (including)2.0.2-rev28693 (including)
Complete_gallery_manager_pluginEnvato2.0.3-rev28734 (including)2.0.3-rev28734 (including)
Complete_gallery_manager_pluginEnvato3.0.0-rev29469 (including)3.0.0-rev29469 (including)
Complete_gallery_manager_pluginEnvato3.0.1-rev29536 (including)3.0.1-rev29536 (including)
Complete_gallery_manager_pluginEnvato3.1.0-rev30003 (including)3.1.0-rev30003 (including)
Complete_gallery_manager_pluginEnvato3.1.1-rev30900 (including)3.1.1-rev30900 (including)
Complete_gallery_manager_pluginEnvato3.2.0-rev31030 (including)3.2.0-rev31030 (including)
Complete_gallery_manager_pluginEnvato3.2.1-rev33197 (including)3.2.1-rev33197 (including)
Complete_gallery_manager_pluginEnvato3.2.2-rev33971 (including)3.2.2-rev33971 (including)
Complete_gallery_manager_pluginEnvato3.2.3-rev34390 (including)3.2.3-rev34390 (including)
Complete_gallery_manager_pluginEnvato3.2.4-rev34757 (including)3.2.4-rev34757 (including)
Complete_gallery_manager_pluginEnvato3.2.5-rev34942 (including)3.2.5-rev34942 (including)
Complete_gallery_manager_pluginEnvato3.2.6-rev36235 (including)3.2.6-rev36235 (including)
Complete_gallery_manager_pluginEnvato3.2.7-rev36257 (including)3.2.7-rev36257 (including)
Complete_gallery_manager_pluginEnvato3.2.8-rev36369 (including)3.2.8-rev36369 (including)
Complete_gallery_manager_pluginEnvato3.3.0-rev36620 (including)3.3.0-rev36620 (including)
Complete_gallery_manager_pluginEnvato3.3.1-rev38906 (including)3.3.1-rev38906 (including)
Complete_gallery_manager_pluginEnvato3.3.2-rev39009 (including)3.3.2-rev39009 (including)

References