In the media-library-assistant plugin before 2.82 for WordPress, Remote Code Execution can occur via the tax_query, meta_query, or date_query parameter in mla_gallery via an admin.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-04-19T23:16:50

Updated: 2024-08-04T11:42:00.659Z

Reserved: 2020-04-19T00:00:00

Link: CVE-2020-11928

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-04-20T00:15:10.980

Modified: 2024-11-21T04:58:55.513

Link: CVE-2020-11928

cve-icon Redhat

No data.