CVE-2024-30238: WordPress Photos and Files Contest Gallery plugin <= 21.3.2 - SQL Injection vulnerability
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Wasiliy Strecker / ContestGallery developer Contest Gallery contest-gallery.This issue affects Contest Gallery: from n/a through <= 21.3.2.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-30238?
CVE-2024-30238 is classified as a SQL Injection vulnerability affecting the Contest Gallery plugin.
How do I fix CVE-2024-30238?
To fix CVE-2024-30238, upgrade the Contest Gallery plugin to version 21.3.3 or later.
What products are affected by CVE-2024-30238?
CVE-2024-30238 affects the Contest Gallery plugin for WordPress, specifically versions from n/a to 21.3.2.
What type of vulnerability is CVE-2024-30238?
CVE-2024-30238 is an SQL Injection vulnerability due to improper neutralization of special elements in SQL commands.
What are the potential consequences of CVE-2024-30238?
Exploiting CVE-2024-30238 could allow attackers to manipulate database queries and potentially gain unauthorized access to sensitive data.