cleantalk
Vulnerabilities and Security Researches

Photo Gallery by 10Web – Mobile-Friendly Image Gallery, CVE-2015-2324

CVE, Research URL

CVE-2015-2324

Published on
Feb 20, 2018
Research Description
Cross-site scripting (XSS) vulnerability in the filemanager in the Photo Gallery plugin before 1.2.13 for WordPress allows remote authenticated users with edit permission to inject arbitrary web script or HTML via unspecified vectors.
Affected versions
Min -, max 1.2.13.
Status
vulnerable