vendor:
Unite Gallery Lite Wordpress Plugin
by:
Nitin Venkatesh
8.8
CVSS
HIGH
Cross-site Request Forgery [CWE-352], Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')[CWE-89]
352, 89
CWE
Product Name: Unite Gallery Lite Wordpress Plugin
Affected Version From: v1.4.6
Affected Version To: v1.4.6
Patch Exists: YES
Related CWE: New & Unassigned
CPE: 2.3:a:wordpress:unite_gallery_lite:1.4.6
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2020
Cross-Site Request Forgery & SQL Injection Vulnerabilities in Unite Gallery Lite WordPress Plugin v1.4.6
The admin forms of the Unite Gallery Lite Wordpress Plugin are susceptible to CSRF. Additionally, the following parameters were found to be susceptible to SQLi - Form submitted to /wp-admin/admin-ajax.php: - data[galleryID] Form submitted to /wp-admin/admin.php: - galleryid - id
Mitigation:
Ensure that all user input is properly validated and sanitized before being used in an SQL query. Additionally, ensure that all forms are protected against CSRF attacks.