CVE-2022-4157

CWE-89SQL Injection3 documents3 sources
Severity
4.9MEDIUM
EPSS
0.8%
top 25.64%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 26

Description

The Contest Gallery WordPress plugin before 19.1.5.1, Contest Gallery Pro WordPress plugin before 19.1.5.1 do not escape the cg_option_id POST parameter before concatenating it to an SQL query in export-votes-all.php. This may allow malicious users with administrator privileges (i.e. on multisite WordPress configurations) to leak sensitive information from the site's database.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:NExploitability: 1.2 | Impact: 3.6

Affected Packages3 packages

CVEListV5unknown/contest_gallery< 19.1.5.1
CVEListV5unknown/contest_gallery_pro< 19.1.5.1

🔴Vulnerability Details

2
GHSA
GHSA-9p2g-49fh-fv3m: The Contest Gallery WordPress plugin before 192022-12-26
CVEList
Contest Gallery < 19.1.5 - Admin+ SQL Injection2022-12-26
CVE-2022-4157 (MEDIUM CVSS 4.9) | The Contest Gallery WordPress plugi | cvebase.io