CVE-2022-4160

CWE-89SQL Injection4 documents4 sources
Severity
6.5MEDIUM
EPSS
0.8%
top 26.49%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 26

Description

The Contest Gallery WordPress plugin before 19.1.5.1, Contest Gallery Pro WordPress plugin before 19.1.5.1 do not escape the cg_copy_id POST parameter before concatenating it to an SQL query in cg-copy-comments.php and cg-copy-rating.php. This may allow malicious users with at least author privilege to leak sensitive information from the site's database.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages3 packages

CVEListV5unknown/contest_gallery< 19.1.5.1
CVEListV5unknown/contest_gallery_pro< 19.1.5.1

🔴Vulnerability Details

2
GHSA
GHSA-r8rq-8q99-cp9f: The Contest Gallery WordPress plugin before 192022-12-26
CVEList
Contest Gallery < 19.1.5 - Author+ SQL Injection2022-12-26

📋Vendor Advisories

1
Oracle
Oracle Oracle PeopleSoft Risk Matrix: Security (OpenSSL) — CVE-2021-41602022-04-15
CVE-2022-4160 (MEDIUM CVSS 6.5) | The Contest Gallery WordPress plugi | cvebase.io