CVE-2022-4157 | Contest Gallery Plugin/Contest Gallery Pro Plugin 19.1.5 on WordPress POST Parameter export-votes-all.php cg_option_id sql injection
A vulnerability has been found in Contest Gallery Plugin and Contest Gallery Pro Plugin 19.1.5 on WordPress and classified as critical. Affected by this vulnerability is an unknown functionality of the file export-votes-all.php of the component POST Parameter Handler. The manipulation of the argument cg_option_id leads to sql injection.
This vulnerability is known as CVE-2022-4157. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.