First published: Mon Dec 06 2021(Updated: )
Piwigo v11.5 was discovered to contain a SQL injection vulnerability via the parameter pwg_token in /admin/batch_manager_global.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Piwigo Piwigo | =11.5.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for Piwigo v11.5 is CVE-2021-40313.
The severity level of CVE-2021-40313 is high.
CVE-2021-40313 affects Piwigo v11.5.
CVE-2021-40313 is a SQL injection vulnerability.
To fix CVE-2021-40313 in Piwigo v11.5, apply the official patch or upgrade to a newer version that addresses the vulnerability.