### [CVE-2019-14467](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-14467) ![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen) ### Description The Social Photo Gallery plugin 1.0 for WordPress allows Remote Code Execution by creating an album and attaching a malicious PHP file in the cover photo album, because the file extension is not checked. ### POC #### Reference - http://packetstormsecurity.com/files/155357/WordPress-Social-Photo-Gallery-1.0-Remote-Code-Execution.html - https://seclists.org/fulldisclosure/2019/Nov/13 - https://wpvulndb.com/vulnerabilities/9952 #### Github - https://github.com/ARPSyndicate/cvemon