QID 150432

Date Published: 2021-12-03

QID 150432: WordPress Photo Gallery by Ays Plugin Authenticated Blind SQL Injections (CVE-2021-24462)

Gallery - Photo Galleys is a responsive image gallery wordpress plugin. Which allows you to add unlimited galleries and unlimited images in your preferred format.

The get_gallery_categories() and get_galleries() functions in the plugin did not use whitelist or validate the order by parameter before using it in SQL statements passed to the get_results() DB calls, leading to SQL injection issues in the admin dashboard

Affected versions:
before 4.4.4

Successful exploitation could allow an unauthenticated, remote attacker to manipulate SQL queries by injecting arbitrary SQL code or further exploit latent vulnerabilities in the underlying database.

  • CVSS V3 rated as Critical - 8.8 severity.
  • CVSS V2 rated as High - 6.5 severity.
  • Solution
    Customers are advised to upgrade to Gallery - Photo Galleys 4.4.4 or later versions to remediate this vulnerability.

    CVEs related to QID 150432

    Software Advisories
    Advisory ID Software Component Link
    Photo Gallery URL Logo ays-pro.com/wordpress/photo-gallery