CVE-2022-50894
EUVD-2026-265113.01.2026, 23:15
VIAVIWEB Wallpaper Admin 1.0 contains an SQL injection vulnerability that allows authenticated attackers to manipulate database queries by injecting SQL code through the img_id parameter. Attackers can send GET requests to edit_gallery_image.php with malicious img_id values to extract database information.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| viaviweb | wallpaper_admin | 1.0 |
𝑥
= Vulnerable software versions