CVEs Blog | G5 Cyber Security

CVE-2015-2035 – SQL injection vulnerability in the administrative backend in Piwigo befor

SQL injection vulnerability in the administrative backend in Piwigo before 2.7.4 allows remote administrators to execute arbitrary SQL commands via the user parameter in the history page to admin.php.

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2035

Reference (s):

Exit mobile version