PT-2023-10169 · WordPress · Portfolio Gallery Plugin

Published

2023-05-28

·

Updated

2024-05-17

·

CVE-2014-125101

CVSS v2.0

6.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Portfolio Gallery Plugin versions up to 1.1.8
Description A critical vulnerability has been found in the Portfolio Gallery Plugin on WordPress, affecting an unknown part. The manipulation leads to sql injection and can be initiated remotely.
Recommendations For Portfolio Gallery Plugin versions up to 1.1.8, upgrade to version 1.1.9 to address this issue.

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2014-125101

Affected Products

Portfolio Gallery Plugin