VulnerabilityModified
CVE-2014-2558
The File Gallery plugin before 1.7.9.2 for WordPress does not properly escape strings, which allows remote administrators to execute arbitrary PHP code via a \' (backslash quote) in the setting fields to /wp-admin/options-media.php, related to the…
MEDIUM 6.5EPSS 1.75%
Does this matter?
Lower severity and a low EPSS score (1.75%). Track it; it rarely justifies an emergency change on its own.
Description
The File Gallery plugin before 1.7.9.2 for WordPress does not properly escape strings, which allows remote administrators to execute arbitrary PHP code via a \' (backslash quote) in the setting fields to /wp-admin/options-media.php, related to the create_function function.
- CVSS 2.0
- 6.5 MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
- EPSS
- 1.75% probability · 77th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-94
- Affected
- skyphe/file-gallery
- Source
- cve@mitre.org
References
- http://seclists.org/fulldisclosure/2014/Apr/305Exploit
- http://wordpress.org/plugins/file-gallery/changelog/Patch
- http://www.securityfocus.com/bid/67120
- http://www.securityfocus.com/bid/67183
- http://seclists.org/fulldisclosure/2014/Apr/305Exploit
- http://wordpress.org/plugins/file-gallery/changelog/Patch
- http://www.securityfocus.com/bid/67120
- http://www.securityfocus.com/bid/67183
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.