The Photo Gallery by 10Web WordPress plugin before 1.8.28 does not properly sanitise and escape some of its Gallery settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)
History

Tue, 05 Nov 2024 19:15:00 +0000

Type Values Removed Values Added
Weaknesses CWE-79
Metrics cvssV3_1

{'score': 4.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N'}


Wed, 09 Oct 2024 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Wed, 09 Oct 2024 06:15:00 +0000

Type Values Removed Values Added
Description The Photo Gallery by 10Web WordPress plugin before 1.8.28 does not properly sanitise and escape some of its Gallery settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed (for example in multisite setup)
Title Photo Gallery by 10Web <= 1.8.27 - Admin+ Stored XSS
References

cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published: 2024-10-09T06:00:05.106Z

Updated: 2024-11-05T18:24:39.752Z

Reserved: 2024-06-13T12:47:21.028Z

Link: CVE-2024-5968

cve-icon Vulnrichment

Updated: 2024-10-09T13:38:24.827Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-10-09T06:15:13.563

Modified: 2024-11-05T19:36:16.320

Link: CVE-2024-5968

cve-icon Redhat

No data.