CVE-2014-8491
18.10.2017, 14:29
The Grand Flagallery plugin before 4.25 for WordPress allows remote attackers to obtain the installation path via a request to (1) flagallery-skins/banner_widget_default/gallery.php or (2) flash-album-gallery/skins/banner_widget_default/gallery.php.Enginsight
Vendor | Product | Version |
---|---|---|
codeasily | grand_flagallery | 𝑥 ≤ 4.24 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration