Medium severity6.1NVD Advisory· Published Apr 15, 2019· Updated Jun 17, 2026
CVE-2018-18017
CVE-2018-18017
Description
XSS exists in the Tribulant Slideshow Gallery plugin 1.6.8 for WordPress via the wp-admin/admin.php?page=slideshow-galleries&method=save Gallery[id] or Gallery[title] parameter.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Range: = 1.6.8
- cpe:2.3:a:tribulant:slideshow_gallery:1.6.8:*:*:*:*:wordpress:*:*
- Range: <=1.6.8
Patches
Vulnerability mechanics
References
2- ansawaf.blogspot.com/2019/04/xss-and-sqli-in-slideshow-gallery.htmlnvdExploitThird Party Advisory
- docs.google.com/document/d/1rwN4hJkD5TJfCa16rsGwzYhzL-ODd2VLkFnPvAIq4Ys/editnvdPermissions RequiredThird Party Advisory
News mentions
0No linked articles in our index yet.