QID 731376
QID 731376: WordPress LayerSlider Plugin SQL Injection Vulnerability
LayerSlider is a premium multi-purpose slider for creating image galleries, content sliders, and slideshows.
The LayerSlider plugin for WordPress is vulnerable to SQL Injection via the ls_get_popup_markup action due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existing SQL query.
Affected Versions:
WordPress LayerSlider Plugin 7.9.11 and 7.10.0
QID Detection Logic:
This QID sends a HTTP GET request to "wp-content/plugins/LayerSlider/assets/locales/LayerSlider-en_US.pot" or "wp-content/plugins/LayerSlider/assets/static/layerslider/js/layerslider.kreaturamedia.jquery.js" endpoint and checks for vulnerable version of WordPress LayerSlider plugin running on the target application.
Successful exploitation of this vulnerability may allow an unauthenticated attackers to append additional SQL queries into already existing queries that can be used to extract sensitive information from the database.
- LayerSlider Plugin Release Notes -
layerslider.com/release-log/
CVEs related to QID 731376
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| LayerSlider Plugin Release Notes |
|