Medium severity5.4NVD Advisory· Published Sep 14, 2017· Updated May 13, 2026
CVE-2017-1002011
CVE-2017-1002011
Description
Vulnerability in wordpress plugin image-gallery-with-slideshow v1.5.2, There is a stored XSS vulnerability via the $value->gallery_name and $value->gallery_description where anyone with privileges to modify or add galleries/images and inject javascript into the database.
Affected products
2cpe:2.3:a:anblik:image-gallery-with-slideshow:1.5.2:*:*:*:*:wordpress:*:*+ 1 more
- cpe:2.3:a:anblik:image-gallery-with-slideshow:1.5.2:*:*:*:*:wordpress:*:*
- (no CPE)range: unspecified
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- www.vapidlabs.com/advisory.phpnvdExploitThird Party Advisory
- wordpress.org/plugins/image-gallery-with-slideshow/nvdThird Party Advisory
News mentions
0No linked articles in our index yet.