CVE-2017-20248

Severity CVSS v4.0:
HIGH
Type:
CWE-22 Path Traversal
Publication date:
09/06/2026
Last modified:
21/07/2026

Description

Apptha Slider Gallery 1.0 contains a path traversal vulnerability that allows unauthenticated attackers to download arbitrary files by manipulating the imgname parameter. Attackers can send requests to asgallDownload.php with directory traversal sequences ../ to access sensitive files outside the intended directory.