CVE-2017-20102: Album Lock Project Album Lock

Medium severity, CVSS 5.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A vulnerability was found in Album Lock 4.0 and classified as critical. Affected by this issue is some unknown functionality of the file /getImage. The manipulation of the argument filePaht leads to path traversal. Attacking locally is a requirement. The exploit has been disclosed to the public and may be used.

Affected products

Published 2022-06-27. Last modified 2026-06-17.