WordPress Plugin Vulnerabilities

Photo Gallery by WD <= 1.3.66 - Cross-Site Scripting (XSS)

Description

User input gets first escaped with esc_html() and then urldecoded. This leads to the possibility of reflected XSS with a double url encoded payload.

Proof of Concept

Affects Plugins

Fixed in 1.3.67

References

Classification

Type
XSS
CWE

Miscellaneous

Submitter
Karim El Ouerghemmi
Submitter website
Verified
No

Timeline

Publicly Published
2018-02-22 (about 8 years ago)
Added
2018-02-25 (about 8 years ago)
Last Updated
2019-11-01 (about 6 years ago)

Other