plugin

Cool Video Gallery Vulnerabilities

1 known security issue reported for the Cool Video Gallery WordPress plugin. Most recent disclosed Dec 2, 2015.

1 high

Running Cool Video Gallery on your site? Check whether your installed version is affected.

Scan your site free

Cool Video Gallery <= 1.9 - Authenticated Command Injection

high

lib/core.php in the Cool Video Gallery plugin 1.9 for WordPress allows remote attackers to execute arbitrary code via shell metacharacters in the "Width of preview image" and possibly other input fields in the "Video Gallery Settings" page.

CVSS:
8.8
Affected:
up to 2.0
Fixed in:
2.0
Disclosed:
Dec 2, 2015

CVE-2015-7527 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database