CVE-2017-17827
21.12.2017, 04:29
Piwigo 2.9.2 is vulnerable to Cross-Site Request Forgery via /admin.php?page=configuration§ion=main or /admin.php?page=batch_manager&mode=unit. An attacker can exploit this to coerce an admin user into performing unintended actions.
Vendor | Product | Version |
---|---|---|
piwigo | piwigo | 2.9.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References