The Photo Gallery, Images, Slider plugin for WordPress is vulnerable to a security threat. Attackers can use the vulnerable parameter ‘function’ supplied by the wp_ajax_rbs_gallery AJAX action to execute code on the server without needing to be authenticated. This vulnerability affects versions of the plugin up to, and including, 2.0.14.