HTTP: Multiple WordPress GRAND Flash Album Gallery Plugin Vulnerabilities

This signature detects attempts to exploit multiple known vulnerabilities in the WordPress Grand Flash Album plugin. An attacker can exploit these issues to obtain sensitive information or carry out unauthorized actions on the underlying database.

Extended Description

GRAND Flash Album Gallery for WordPress is prone to an SQL-injection vulnerability and an information-disclosure vulnerability. Exploiting these issues could allow an attacker to obtain sensitive information, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database. GRAND Flash Album Gallery 0.55 is vulnerable; other versions may also be affected.

Affected Products

Codeasily grand_flash_album_gallery

References

BugTraq: 46777

URL: http://codeasily.com/

Short Name
HTTP:PHP:WORDPRESS-MUL-GND-ALBM
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Album Flash GRAND Gallery Multiple Plugin Vulnerabilities WordPress bid:46777
Release Date
03/16/2011
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Unknown
Vendors

Codeasily

Found a potential security threat?