CVE-2014-4648: Critical severity piwigo vulnerability
Published Jun 28, 2014
·Updated
Unspecified vulnerability in Piwigo before 2.6.3 has unknown impact and attack vectors, related to a "security failure."
Affected Software
3 affected components
Piwigo piwigo<=2.6.2
Piwigo piwigo=2.6.0
Piwigo piwigo=2.6.1
Event History
Jun 28, 2014
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2014-4648?
The severity of CVE-2014-4648 is unspecified, but it is categorized as a security failure with unknown impact and attack vectors.
2
How do I fix CVE-2014-4648?
To fix CVE-2014-4648, upgrade Piwigo to version 2.6.3 or later.
3
Which versions of Piwigo are affected by CVE-2014-4648?
Piwigo versions 2.6.0, 2.6.1, and all versions before 2.6.3 are affected by CVE-2014-4648.
4
Is there a patch available for CVE-2014-4648?
Yes, upgrading to Piwigo version 2.6.3 provides the necessary fix for CVE-2014-4648.
5
What should I do if I cannot upgrade my Piwigo installation for CVE-2014-4648?
If you cannot upgrade, consider implementing custom security measures or monitoring until an upgrade is possible.