First published: Mon Dec 02 2019(Updated: )
piwigo has XSS in password.php (incomplete fix for CVE-2012-4525)
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Piwigo Piwigo | >=2.4.0<=2.4.3 | |
Piwigo Piwigo | =2.3.1 | |
debian/piwigo |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2012-4526 is medium.
The affected software of CVE-2012-4526 is piwigo.
To fix CVE-2012-4526, update piwigo to version 2.4.4 or higher.
There are no known remedies for CVE-2012-4526.
The CWE for CVE-2012-4526 is CWE-79.