CVE-2023-33362: SQL Injection
Published May 23, 2023
·Updated
Piwigo 13.6.0 is vulnerable to SQL Injection via in the "profile" function.
Affected Software
1 affected component
Piwigo piwigo=13.6.0
Remediation
Patch Available
Event History
May 23, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·02:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Dec 2, 2025
Exploit Published
12:00 AM
Known Exploited
07:12 PM
Frequently Asked Questions
1
What is the vulnerability ID for this Piwigo issue?
The vulnerability ID for this Piwigo issue is CVE-2023-33362.
2
What is the severity level of CVE-2023-33362?
The severity level of CVE-2023-33362 is critical with a score of 9.8.
3
How does Piwigo 13.6.0 get affected by this vulnerability?
Piwigo 13.6.0 is vulnerable to SQL Injection via the "profile" function.
4
What is the affected software version?
The affected software version is Piwigo 13.6.0.
5
Is there a fix available for this vulnerability?
Yes, a fix for this vulnerability is available. It is recommended to upgrade to the latest version of Piwigo.