Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-18578 | The 10Web Photo Gallery plugin through 1.5.68 for WordPress allows XSS via album_gallery_id_0, bwg_album_search_0, and type_0 for bwg_frontend_data. NOTE: other parameters are covered by CVE-2021-24291, CVE-2021-25041, and CVE-2021-46889. NOTE: VMware information, previously connected to this CVE ID because of a typo, is at CVE-2022-31693. |
Wed, 29 Oct 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
10web
10web photo Gallery |
|
| Weaknesses | NVD-CWE-noinfo | CWE-79 |
| CPEs | cpe:2.3:a:10web:photo_gallery:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Vmware
Vmware tools |
10web
10web photo Gallery |
| Metrics |
cvssV3_1
|
cvssV3_1
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2025-02-13T16:28:01.676Z
Reserved: 2021-04-23T00:00:00.000Z
Link: CVE-2021-31693
No data.
Status : Analyzed
Published: 2022-11-29T21:15:10.597
Modified: 2025-10-29T14:14:18.500
Link: CVE-2021-31693
No data.
OpenCVE Enrichment
No data.
EUVD