CVE-2018-18018: SQL Injection
SQL Injection exists in the Tribulant Slideshow Gallery plugin 1.6.8 for WordPress via the wp-admin/admin.php?page=slideshow-galleries&method=save Gallery[id] or Gallery[title] parameter.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this SQL injection vulnerability?
The vulnerability ID for this SQL injection vulnerability is CVE-2018-18018.
What software is affected by this vulnerability?
The Tribulant Slideshow Gallery plugin version 1.6.8 for WordPress is affected by this vulnerability.
How severe is the vulnerability?
The severity of this vulnerability is classified as critical with a CVSS score of 9.8.
How does the SQL injection occur in the Tribulant Slideshow Gallery plugin for WordPress?
The SQL injection occurs via the wp-admin/admin.php?page=slideshow-galleries&method=save Gallery[id] or Gallery[title] parameter.
Is there any reference material available for this vulnerability?
Yes, references for this vulnerability can be found at the following links: [https://ansawaf.blogspot.com/2019/04/xss-and-sqli-in-slideshow-gallery.html](https://ansawaf.blogspot.com/2019/04/xss-and-sqli-in-slideshow-gallery.html) and [https://docs.google.com/document/d/1rwN4hJkD5TJfCa16rsGwzYhzL-ODd2VLkFnPvAIq4Ys/edit?usp=sharing](https://docs.google.com/document/d/1rwN4hJkD5TJfCa16rsGwzYhzL-ODd2VLkFnPvAIq4Ys/edit?usp=sharing).