S4E just found a critical-severity finding from ruijie rg-uac remote code execution scanner
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
medium·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2013-4117 Scanner

CVE-2013-4117 scanner - Cross-Site Scripting (XSS) vulnerability in Category Grid View Gallery plugin for WordPress

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.1k
Times Used
continuous scan runs
3.4k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2013-4117
4.3
CVSS

Cross-site scripting (XSS) vulnerability in includes/CatGridPost.php in the Category Grid View Gallery plugin 2.3.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the ID parameter.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
n/aby n/a
n/a
Updated Aug 22, 2026View on NVD →
Detail

Category Grid View Gallery plugin is a popular WordPress plugin, used by numerous website owners for displaying their images in a visually appealing manner. This plugin provides users with an easy way to organize their images in a grid view, categorize them, and create galleries that can be embedded into their website. It is designed to make the website look attractive, organized, and easy to navigate. 

The CVE-2013-4117 vulnerability was detected in the includes/CatGridPost.php file of the Category Grid View Gallery plugin version 2.3.1. This vulnerability exposes websites to cross-site scripting (XSS) attacks, making it possible for remote attackers to inject arbitrary web script or HTML through the ID parameter. This can allow the attacker to execute malicious code on the website, possibly even taking control of it.

If exploited, this vulnerability can lead to severe damage such as data theft, web application hijacking, implantation of Trojans or other malware, and other cyberattacks. The attacker can add malicious code to the website, create fake login forms, steal user account credentials, redirect visitors to phishing sites, alter website content, and launch other attacks that can result in financial losses and reputational damage.

At s4e.io, we offer a range of security solutions that can help protect against vulnerabilities like CVE-2013-4117. Our pro features enable users to quickly and easily identify vulnerabilities in their digital assets, so that they can take proactive measures to prevent cyberattacks. With our platform, website owners can rest assured that their sites are protected against the latest threats and vulnerabilities.

 

REFERENCES

Solution Advice

Here are some precautions that can be taken to prevent this vulnerability from being exploited:

  • Keep the Category Grid View Gallery plugin up-to-date with the latest security patches.
  • Install a web application firewall (WAF) that can help identify and block XSS attacks.
  • Educate website development and maintenance personnel on cross-site scripting and other common web application vulnerabilities.
  • Use input validation to ensure that only authorized data is entered by users.
  • Review and test all third-party plugins for vulnerabilities before installing them on your website.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2013-4117 scanner - Cross-Site Scripting (XSS) vulnerability in Category Grid View Gallery plugin for WordPress | S4E