WordPress Filter Gallery Plugin, 1b9afc2c-2ad5-4b9a-ba8b-88784a378c8a
- CVE, Research URL
- Home page URL
- Application
- Published on
- -
- Research Description
- Filter Gallery [filter-gallery] < 0.0.7 Filter Gallery < 0.0.7 - Unauthorised AJAX Calls The plugin had a logic flaw in the CSRF checks of its AJAX calls, allowing them to be passed by not providing the related parameter in the request. This could allow attacker to make logged in users do unwanted actions. Furthermore, the AJAX calls are also lacking capability checks, allowing any authenticated user (such as subscriber) to call them and delete/edit/add arbitrary galleries. Finally, some of the fields were not sanitised before being output in the response, which could also lead to Cross-Site Scripting issues
- Affected versions
-
max 0.0.7.
- Status
-
vulnerable