First published: Thu Dec 21 2017(Updated: )
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Piwigo Piwigo | =2.9.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2017-17827.
The severity of CVE-2017-17827 is high.
The affected software version of CVE-2017-17827 is Piwigo 2.9.2.
An attacker can exploit CVE-2017-17827 to coerce an admin user into performing unintended actions.
Yes, there are references available for CVE-2017-17827. You can find them at the following links: [link1](https://github.com/Piwigo/Piwigo/commit/c3b4c6f7f0ddeaea492080fb8211d7b4cfedaf6f), [link2](https://github.com/Piwigo/Piwigo/issues/822), [link3](https://github.com/sahildhar/sahildhar.github.io/blob/master/research/reports/Piwigo_2.9.2/Cross%20Site%20Request%20Forgery%20in%20Piwigo%202.9.2.md).