Multiple directory traversal vulnerabilities in MMS Gallery PHP 1.0 allow remote attackers to read arbitrary files via a .. (dot dot) in the id parameter to (1) get_image.php or (2) get_file.php in mms_template/.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.104
EPSS Ranking 92.9%