Description
The All-in-One Video Gallery plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the resolve_import_directory() function in versions 4.5.4 to 4.5.7. This makes it possible for authenticated attackers, with Author-level access and above, to upload arbitrary files on the affected site's server which may make remote code execution possible.
Problem types
CWE-434 Unrestricted Upload of File with Dangerous Type
Product status
4.5.4 (semver)
Timeline
| 2025-11-10: | Vendor Notified |
| 2025-12-05: | Disclosed |
Credits
Kenneth Dunn
References
www.wordfence.com/...-84e3-4220-b39b-69044c42e9f9?source=cve
plugins.trac.wordpress.org/.../trunk/admin/import-export.php