Vulnerability Description
The Gallery by BestWebSoft WordPress plugin before 4.7.0 does not perform proper sanitization of gallery information, leading to a Stored Cross-Site Scription vulnerability. The attacker must have at least the privileges of the Author role.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Bestwebsoft | Gallery | < 4.7.0 |
References
- https://wpscan.com/vulnerability/d48c6c50-3734-4191-9833-0d9b09b1bd8aExploitThird Party Advisory
- https://wpscan.com/vulnerability/d48c6c50-3734-4191-9833-0d9b09b1bd8aExploitThird Party Advisory
FAQ
What is CVE-2023-0764?
CVE-2023-0764 is a vulnerability with a CVSS score of 5.4 (MEDIUM). The Gallery by BestWebSoft WordPress plugin before 4.7.0 does not perform proper sanitization of gallery information, leading to a Stored Cross-Site Scription vulnerability. The attacker must have at ...
How severe is CVE-2023-0764?
CVE-2023-0764 has been rated MEDIUM with a CVSS base score of 5.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-0764?
Check the references section above for vendor advisories and patch information. Affected products include: Bestwebsoft Gallery.