lib/core.php in the Cool Video Gallery plugin 1.9 for WordPress allows remote attackers to execute arbitrary code via shell metacharacters in the "Width of preview image" and possibly other input fields in the "Video Gallery Settings" page.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: redhat
Published: 2015-12-17T19:00:00
Updated: 2024-08-06T07:51:28.500Z
Reserved: 2015-09-29T00:00:00
Link: CVE-2015-7527
Vulnrichment
No data.
NVD
Status : Modified
Published: 2015-12-17T19:59:04.573
Modified: 2024-11-21T02:36:55.727
Link: CVE-2015-7527
Redhat
No data.