Piwigo Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2023-27233 - Vulnerability Database
Piwigo Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability - CVE-2023-27233
High
Reference:
CVE-2023-27233
Title:
Piwigo Improper Neutralization of Special Elements used in an SQL Command (SQL Injection) Vulnerability
Overview:
Piwigo before 13.6.0 was discovered to contain a SQL injection vulnerability via the order0dir parameter at user_list_backend.php.