WordPress Plugin Vulnerabilities

Simple Photo Gallery 1.7.8 - Blind SQL Injection

Description

MySQL >= 5.0.12 AND time-based blind (SELECT) sql injection in the gallery_id parameter.

Proof of Concept

Affects Plugins

Fixed in 1.8.0

Classification

Type
SQLI
OWASP top 10
CWE

Miscellaneous

Submitter
Viktor Gazdag
Submitter twitter
Verified
No

Timeline

Publicly Published
2015-05-21 (about 10 years ago)
Added
2015-05-22 (about 10 years ago)
Last Updated
2015-05-22 (about 10 years ago)

Other