CVE-2024-3632
Smart Image Gallery < 1.0.19 - Update/Delete Google API Key via CSRF
The Smart Image Gallery WordPress plugin before 1.0.19 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
Productos afectados
Unknown · Smart Image Gallery¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →