CVE-2017-20248
Severity CVSS v4.0:
HIGH
Type:
CWE-22
Path Traversal
Publication date:
09/06/2026
Last modified:
21/07/2026
Description
Apptha Slider Gallery 1.0 contains a path traversal vulnerability that allows unauthenticated attackers to download arbitrary files by manipulating the imgname parameter. Attackers can send requests to asgallDownload.php with directory traversal sequences ../ to access sensitive files outside the intended directory.
Impact
Base Score 4.0
8.70
Severity 4.0
HIGH
Base Score 3.x
7.50
Severity 3.x
HIGH



