Show filters
17 Total Results
Displaying 11-17 of 17
Sort by:
Attacker Value
Unknown

CVE-2016-1000124

Disclosure Date: October 06, 2016 (last updated February 15, 2024)
Unauthenticated SQL Injection in Huge-IT Portfolio Gallery Plugin v1.0.6
0
Attacker Value
Unknown

CVE-2016-1000113

Disclosure Date: October 06, 2016 (last updated November 25, 2024)
XSS and SQLi in huge IT gallery v1.1.5 for Joomla
Attacker Value
Unknown

CVE-2016-1000123

Disclosure Date: October 06, 2016 (last updated February 15, 2024)
Unauthenticated SQL Injection in Huge-IT Video Gallery v1.0.9 for Joomla
0
Attacker Value
Unknown

CVE-2016-1000114

Disclosure Date: October 06, 2016 (last updated November 25, 2024)
XSS in huge IT gallery v1.1.5 for Joomla
Attacker Value
Unknown

CVE-2016-1000125

Disclosure Date: October 06, 2016 (last updated February 15, 2024)
Unauthenticated SQL Injection in Huge-IT Catalog v1.0.7 for Joomla
0
Attacker Value
Unknown

CVE-2016-11018

Disclosure Date: May 11, 2016 (last updated February 21, 2025)
An issue was discovered in the Huge-IT gallery-images plugin before 1.9.0 for WordPress. The headers Client-Ip and X-Forwarded-For are prone to unauthenticated SQL injection. The affected file is gallery-images.php. The affected function is huge_it_image_gallery_ajax_callback().
Attacker Value
Unknown

CVE-2014-7153

Disclosure Date: September 22, 2014 (last updated October 05, 2023)
SQL injection vulnerability in the editgallery function in admin/gallery_func.php in the Huge-IT Image Gallery plugin 1.0.1 for WordPress allows remote authenticated users to execute arbitrary SQL commands via the removeslide parameter to wp-admin/admin.php.
0