CVE-2023-33361: SQL Injection
Published May 23, 2023
·Updated
Piwigo 13.6.0 is vulnerable to SQL Injection via /admin/permalinks.php.
Affected Software
1 affected component
Piwigo piwigo=13.6.0
Remediation
Patch Available
Event History
May 23, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-33361?
CVE-2023-33361 is a vulnerability in Piwigo 13.6.0 that allows SQL Injection via the /admin/permalinks.php page.
2
How severe is CVE-2023-33361?
CVE-2023-33361 has a severity rating of 9.8 (critical).
3
How does CVE-2023-33361 affect Piwigo?
CVE-2023-33361 affects Piwigo version 13.6.0.
4
How can CVE-2023-33361 be exploited?
CVE-2023-33361 can be exploited by sending malicious SQL queries through the /admin/permalinks.php page.
5
Is there a fix for CVE-2023-33361?
Currently, there is no known fix for CVE-2023-33361. It is recommended to update to a later version when available.