← Back

Tribulant

tribulant

22 CVEs • 5 products

Products (5)

Click to collapse
Toggle

CVEs (22)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Tribulant
1Slideshow Gallery
Nov 21, 2024
Oct 3, 2018
N/A· v4
6.1 MEDIUM· v3
4.3 MEDIUM· v2
The Tribulant Slideshow Gallery plugin before 1.6.6.1 for WordPress has XSS via the id, method, Gallerymessage, Galleryerror, or Galleryupdated parameter.
1Tribulant
1Tibulant Slideshow Gallery
May 6, 2026
Sep 11, 2014
N/A· v4
N/A· v3
6.5 MEDIUM· v2
Unrestricted file upload vulnerability in the Tribulant Slideshow Gallery plugin before 1.4.7 for WordPress allows remote authenticated users to execute arbitrary code by uploading a PHP file, then accessing it via a dir...Show more
Unrestricted file upload vulnerability in the Tribulant Slideshow Gallery plugin before 1.4.7 for WordPress allows remote authenticated users to execute arbitrary code by uploading a PHP file, then accessing it via a direct request to the file in wp-content/uploads/slideshow-gallery/.Show less