The Image Photo Gallery Final Tiles... CVE-2022-0186

3.5 AV AC AU C I A
发布: 2022-02-21
修订: 2024-11-21

The Image Photo Gallery Final Tiles Grid WordPress plugin before 3.5.3 does not sanitise and escape the Description field when editing a gallery, allowing users with a role as low as contributor to perform Cross-Site Scripting attacks against other users having access to the gallery dashboard

0%
暂无可用Exp或PoC
当前有1条受影响产品信息