WordPress 插件 NextGEN Gallery SQL 注入漏洞

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

As part of a vulnerability research project for our [Sucuri Firewall (WAF)](https://sucuri.net/website-firewall/), we have been auditing multiple open source projects looking for security issues. While working on the WordPress plugin NextGEN Gallery, we discovered a **severe SQL Injection** vulnerability. This vulnerability allows an unauthenticated user to grab data from the victim’s website database, including sensitive user information. ## **Are You at Risk?** This vulnerability can be exploited by attackers in at least two different scenarios: 1. If you use a **NextGEN Basic TagCloud** **G****allery** on your site, or 2. If you allow your users to submit posts to be reviewed (contributors). If you fit into any of these two cases, you’re definitely at risk. This issue existed because NextGEN Gallery allowed improperly sanitized user input in a WordPress prepared SQL query; which is basically the same as adding user input inside a raw SQL query. Using this attack vector, an...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息