First published: Fri Mar 18 2022(Updated: )
Piwigo v12.2.0 was discovered to contain an information leak via the action parameter in /admin/maintenance_actions.php.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Piwigo Piwigo | =12.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for Piwigo v12.2.0 is CVE-2022-26267.
The severity of CVE-2022-26267 is high with a CVSS score of 7.5.
The affected software version for CVE-2022-26267 is Piwigo v12.2.0.
The information leak vulnerability in Piwigo v12.2.0 can be exploited via the action parameter in /admin/maintenance_actions.php.
At the moment, there is no known fix available for CVE-2022-26267. It is recommended to follow the official Piwigo documentation for any updates or patches.