Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-2035

Опубликовано: 20 фев. 2015
Источник: debian
EPSS Низкий

Описание

SQL injection vulnerability in the administrative backend in Piwigo before 2.7.4 allows remote administrators to execute arbitrary SQL commands via the user parameter in the history page to admin.php.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
piwigoremovedpackage
piwigoend-of-lifesqueezepackage

Примечания

  • Request to mark the package as unsupported in #779104

EPSS

Процентиль: 69%
0.00613
Низкий

Связанные уязвимости

ubuntu
почти 11 лет назад

SQL injection vulnerability in the administrative backend in Piwigo before 2.7.4 allows remote administrators to execute arbitrary SQL commands via the user parameter in the history page to admin.php.

nvd
почти 11 лет назад

SQL injection vulnerability in the administrative backend in Piwigo before 2.7.4 allows remote administrators to execute arbitrary SQL commands via the user parameter in the history page to admin.php.

github
больше 3 лет назад

SQL injection vulnerability in the administrative backend in Piwigo before 2.7.4 allows remote administrators to execute arbitrary SQL commands via the user parameter in the history page to admin.php.

EPSS

Процентиль: 69%
0.00613
Низкий