Description
The Smart Image Gallery WordPress plugin before 1.0.19 does not have CSRF check in place when updating its settings, which could allow attackers to make a logged in admin change them via a CSRF attack
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
No advisories yet.
References
History
Thu, 15 May 2025 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Codepeople
Codepeople smart Image Gallery |
|
| Weaknesses | CWE-352 | |
| CPEs | cpe:2.3:a:codepeople:smart_image_gallery:*:*:*:*:*:wordpress:*:* | |
| Vendors & Products |
Codepeople
Codepeople smart Image Gallery |
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2024-08-01T20:20:00.487Z
Reserved: 2024-04-10T19:21:05.307Z
Link: CVE-2024-3632
Updated: 2024-08-01T20:20:00.487Z
Status : Analyzed
Published: 2024-07-13T06:15:02.617
Modified: 2025-05-15T18:33:22.770
Link: CVE-2024-3632
No data.
OpenCVE Enrichment
No data.
Weaknesses