oss-sec mailing list archives

CVE Request - Cross-Site Request Forgery & SQL Injection Vulnerabilities in Unite Gallery Lite Wordpress Plugin v1.4.6


From: Nitin Venkatesh <venkatesh.nitin () gmail com>
Date: Sat, 25 Jul 2015 08:31:02 +0000

Hi,

I discovered Cross-Site Request Forgery & SQL Injection Vulnerabilities in
Unite Gallery Lite Wordpress Plugin v1.4.6 which was responsibly disclosed
to the vendor who fixed the issues in v1.5.

I request a CVE for the same.

References:
http://seclists.org/fulldisclosure/2015/Jul/114

Thanks & regards,
Nitin Venkatesh

Current thread: