Check Point Reference: | CPAI-2014-1783 |
Date Published: | 16 Sep 2014 |
Severity: | High |
Last Updated: | Sunday 07 September, 2014 |
Source: | IPS Research Team |
Protection Provided by: |
Security Gateway |
Who is Vulnerable? | WordPress Gmedia Gallery 1.2.1 |
Vulnerability Description | Gmedia Gallery plugin is prone to Shell Upload vulnerabilities because it fails to properly sanitize user-supplied input. An attacker can exploit these issues to include an arbitrary remote file containing malicious PHP code and execute it in the context of the webserver process. |
SmartView Tracker will log the following entries:
Attack Name: Web Server Enforcement Violation.
Attack Information: WordPress Gmedia Gallery Shell Upload