Piwigo Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2023-27233 - Vulnerability Database

Piwigo Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2023-27233

High
Reference: CVE-2023-27233
Title: Piwigo Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:

Piwigo before 13.6.0 was discovered to contain a SQL injection vulnerability via the order0dir parameter at user_list_backend.php.