CVE-2023-26876

CVSS V2 None CVSS V3 None
Description
SQL injection vulnerability found in Piwigo v.13.5.0 and before allows a remote attacker to execute arbitrary code via the filter_user_id parameter to the admin.php?page=history&filter_image_id=&filter_user_id endpoint.
Overview
  • CVE ID
  • CVE-2023-26876
  • Assigner
  • cve@mitre.org
  • Vulnerability Status
  • Awaiting Analysis
  • Published Version
  • 2023-04-21T15:15:07
  • Last Modified Date
  • 2023-04-24T13:02:23
History
Created Old Value New Value Data Type Notes
2023-04-21 16:01:11 Added to TrackCVE
2023-04-24 14:02:53 2023-04-24T13:02:23 CVE Modified Date updated
2023-04-24 14:02:53 Received Awaiting Analysis Vulnerability Status updated