CVE-2021-40553: Code Injection
Published Jun 28, 2022
·Updated
piwigo 11.5.0 is affected by a remote code execution (RCE) vulnerability in the LocalFiles Editor.
Affected Software
1 affected component
Piwigo piwigo=11.5.0
Event History
Jun 28, 2022
CVE Published
via MITRE·04:22 PM
Data Sourced
via MITRE·04:22 PM
Description
Frequently Asked Questions
1
What is CVE-2021-40553?
CVE-2021-40553 refers to a remote code execution (RCE) vulnerability in the LocalFiles Editor of piwigo version 11.5.0.
2
How severe is CVE-2021-40553?
CVE-2021-40553 has a severity rating of 8.8, which is considered high.
3
What software versions are affected by CVE-2021-40553?
Only Piwigo version 11.5.0 is affected by CVE-2021-40553.
4
What is the Common Weakness Enumeration (CWE) ID for CVE-2021-40553?
CVE-2021-40553 is associated with CWE-94, which is the Code Injection weakness.
5
Is there a fix for CVE-2021-40553?
At the moment, there is no official fix available for CVE-2021-40553. It is recommended to update to a patched version or apply any available security patches provided by the vendor.