The NextGen Gallery plugin for WordPress is vulnerable to a security problem in versions up to and including 2.0.65. This issue could allow someone with the ability to upload files to exploit the website by uploading malicious files, which could result in remote code execution. This vulnerability is caused by an oversight in the way the plugin validates the type of file being uploaded.