Security Advisory

CVE-2015-2035

6.5

Vulnerability Description

SQL injection vulnerability in the administrative backend in Piwigo before 2.7.4 allows remote administrators to execute arbitrary SQL commands via the user parameter in the history page to admin.php.
Published Date February 20, 2015
Official Source NIST NVD Advisory