Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-55mg-c2vp-hrq8

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

lib/core.php in the Cool Video Gallery plugin 1.9 for WordPress allows remote attackers to execute arbitrary code via shell metacharacters in the "Width of preview image" and possibly other input fields in the "Video Gallery Settings" page.

lib/core.php in the Cool Video Gallery plugin 1.9 for WordPress allows remote attackers to execute arbitrary code via shell metacharacters in the "Width of preview image" and possibly other input fields in the "Video Gallery Settings" page.

EPSS

Процентиль: 90%
0.05376
Низкий

Дефекты

CWE-20

Связанные уязвимости

nvd
около 10 лет назад

lib/core.php in the Cool Video Gallery plugin 1.9 for WordPress allows remote attackers to execute arbitrary code via shell metacharacters in the "Width of preview image" and possibly other input fields in the "Video Gallery Settings" page.

EPSS

Процентиль: 90%
0.05376
Низкий

Дефекты

CWE-20