Looking for the vulnerability index of Invicti's legacy products?
Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-27973) - Vulnerability Database

Piwigo Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') Vulnerability (CVE-2021-27973)

Description

SQL injection exists in Piwigo before 11.4.0 via the language parameter to admin.php?page=languages.

References

Related Vulnerabilities