Логотип exploitDog
bind:CVE-2021-24126
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-24126

Количество 2

Количество 2

nvd логотип

CVE-2021-24126

больше 4 лет назад

Unvalidated input and lack of output encoding in the Envira Gallery Lite WordPress plugin, versions before 1.8.3.3, did not properly sanitise the images metadata (namely title) before outputting them in the generated gallery, which could lead to privilege escalation.

CVSS3: 5.4
EPSS: Низкий
github логотип

GHSA-2564-4rf9-wv93

больше 3 лет назад

Unvalidated input and lack of output encoding in the Envira Gallery Lite WordPress plugin, versions before 1.8.3.3, did not properly sanitise the images metadata (namely title) before outputting them in the generated gallery, which could lead to privilege escalation.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2021-24126

Unvalidated input and lack of output encoding in the Envira Gallery Lite WordPress plugin, versions before 1.8.3.3, did not properly sanitise the images metadata (namely title) before outputting them in the generated gallery, which could lead to privilege escalation.

CVSS3: 5.4
0%
Низкий
больше 4 лет назад
github логотип
GHSA-2564-4rf9-wv93

Unvalidated input and lack of output encoding in the Envira Gallery Lite WordPress plugin, versions before 1.8.3.3, did not properly sanitise the images metadata (namely title) before outputting them in the generated gallery, which could lead to privilege escalation.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу