Description
WordPress Plugin Photo Gallery-Image Gallery by Ape is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently deactivate any plugins on the blog. WordPress Plugin Photo Gallery-Image Gallery by Ape version 2.0.6 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0.7 or latest
References
Related Vulnerabilities
WordPress Plugin Gravity Upload Ajax Arbitrary File Upload (1.1)
WordPress Plugin Responsive Lightbox by dFactory Cross-Site Scripting (1.4.11)
Moodle Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2012-0796)
WordPress Plugin Software License Manager Cross-Site Scripting (4.4.7)