CVE-2023-34626: SQL Injection
Published Jun 15, 2023
·Updated
Piwigo 13.7.0 is vulnerable to SQL Injection via the "Users" function.
Affected Software
1 affected component
Piwigo piwigo<=13.7.0
Event History
Jun 15, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2023-34626?
CVE-2023-34626 is a vulnerability in Piwigo 13.7.0 that allows SQL Injection via the "Users" function.
2
How severe is CVE-2023-34626?
CVE-2023-34626 has a severity rating of 4.3 (medium).
3
How does CVE-2023-34626 affect Piwigo?
CVE-2023-34626 affects Piwigo version 13.7.0.
4
What is the Common Weakness Enumeration (CWE) for CVE-2023-34626?
The CWE for CVE-2023-34626 is CWE-89 (SQL Injection).
5
Is there a fix for CVE-2023-34626?
There is no official fix available for CVE-2023-34626 at the moment. It is recommended to stay updated with the latest Piwigo version and follow any security advisories.