CVE-2024-31355: WordPress Slideshow Gallery LITE plugin <= 1.7.8 - Auth. SQL Injection vulnerability
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Tribulant Slideshow Gallery.This issue affects Slideshow Gallery: from n/a through 1.7.8.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-31355?
CVE-2024-31355 has been classified as a high severity vulnerability due to the risk of SQL injection.
How do I fix CVE-2024-31355?
To fix CVE-2024-31355, upgrade to the latest version of Tribulant Slideshow Gallery beyond 1.7.8.
Which software is affected by CVE-2024-31355?
CVE-2024-31355 affects Tribulant Slideshow Gallery versions up to and including 1.7.8 and WordPress Slideshow Gallery LITE version up to and including 1.7.8.
What type of vulnerability is CVE-2024-31355?
CVE-2024-31355 is classified as an SQL Injection vulnerability due to improper neutralization of special elements used in SQL commands.
What can happen if CVE-2024-31355 is exploited?
Exploitation of CVE-2024-31355 can allow attackers to manipulate SQL queries, potentially accessing or modifying sensitive database information.