CVE-2014-4613
16.03.2018, 17:29
Cross-site request forgery (CSRF) vulnerability in the administration panel in Piwigo before 2.6.2 allows remote attackers to hijack the authentication of administrators for requests that add users via a pwg.users.add action in a request to ws.php.
| Vendor | Product | Version |
|---|---|---|
| piwigo | piwigo | 𝑥 < 2.6.2 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration
References