PT-2022-25926 · WordPress · Contest Gallery Pro

Daniel Krohmer

+1

·

Published

2022-12-26

·

Updated

2023-01-05

·

CVE-2022-4154

CVSS v3.1

4.9

Medium

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Contest Gallery Pro WordPress plugin versions prior to 19.1.5
Description The issue allows malicious users with administrator privileges to potentially leak sensitive information from the site's database. This is due to the failure to escape the wp user id GET parameter before it is concatenated to an SQL query in the management-show-user.php file.
Recommendations For versions prior to 19.1.5, update to version 19.1.5 or later to resolve the issue. As a temporary workaround, consider restricting access to the management-show-user.php file to minimize the risk of exploitation. Avoid using the wp user id parameter in the affected endpoint until the issue is resolved.

Exploit

Fix

Related Identifiers

CVE-2022-4154

Affected Products

Contest Gallery Pro