Lucene search

K
vulnrichmentWPScanVULNRICHMENT:CVE-2024-3582
HistoryMay 09, 2024 - 6:00 a.m.

CVE-2024-3582 Ungallery <= 2.2.4 - Stored XSS via CSRF

2024-05-0906:00:02
WPScan
github.com
2
ungallery
csrf
xss
wordpress
vulnerability
attack

AI Score

5.8

Confidence

High

SSVC

Exploitation

poc

Automatable

no

Technical Impact

partial

The UnGallery WordPress plugin through 2.2.4 does not have CSRF check in some places, and is missing sanitisation as well as escaping, which could allow attackers to make logged in admin add Stored XSS payloads via a CSRF attack

ADP Affected

[
  {
    "cpes": [
      "cpe:2.3:a:markreynolds:ungallery:*:*:*:*:*:*:*:*"
    ],
    "vendor": "markreynolds",
    "product": "ungallery",
    "versions": [
      {
        "status": "affected",
        "version": "0",
        "versionType": "semver",
        "lessThanOrEqual": "2.2.4"
      }
    ],
    "defaultStatus": "affected"
  }
]

AI Score

5.8

Confidence

High

SSVC

Exploitation

poc

Automatable

no

Technical Impact

partial

Related for VULNRICHMENT:CVE-2024-3582