A vulnerability has been identified in J2V Folder Gallery, which could be exploited by attackers to gain knowledge of sensitive information. This issue is due to an input validation error in the "download.php" script that does not validate the "file" parameter, which could be exploited by malicious people to access and read the contents of arbitrary files via directory traversal attacks.
Vulnerable Products
Vulnerable Software: J2V Folder Gallery version 3.0 and prior