Описание
The Community plugin 2.9.e-beta for Piwigo allows users to set image information on images in albums for which they do not have permission, by manipulating the image_id parameter.
Ссылки
- PatchThird Party Advisory
- Release Notes
- PatchThird Party Advisory
- Release Notes
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:piwigo:piwigo:2.9.0:e-beta:*:*:*:*:*:*
EPSS
Процентиль: 45%
0.00224
Низкий
4.3 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-639
Связанные уязвимости
CVSS3: 4.3
ubuntu
почти 6 лет назад
The Community plugin 2.9.e-beta for Piwigo allows users to set image information on images in albums for which they do not have permission, by manipulating the image_id parameter.
CVSS3: 4.3
debian
почти 6 лет назад
The Community plugin 2.9.e-beta for Piwigo allows users to set image i ...
github
больше 3 лет назад
The Community plugin 2.9.e-beta for Piwigo allows users to set image information on images in albums for which they do not have permission, by manipulating the image_id parameter.
EPSS
Процентиль: 45%
0.00224
Низкий
4.3 Medium
CVSS3
4 Medium
CVSS2
Дефекты
CWE-639