sahildhar
6 exploits
Active since Dec 2017
Piwigo 2.9.2 - SQL Injection via List Users API sSortDir_0 Parameter
CVSS 4.9
Piwigo 2.9.2 - SQL Injection via Configuration Order By Parameter
CVSS 4.9
Piwigo 2.9.2 - SQL Injection via Batch Manager Unit Mode element_ids Parameter
CVSS 4.9
Piwigo 2.9.2 - Stored Cross-Site Scripting in Batch Manager via tags-* Parameters
CVSS 4.8
Piwigo 2.9.2 - Stored Cross-Site Scripting via Gallery Title Parameter
CVSS 6.1
Piwigo 2.9.2 - Cross-Site Request Forgery via Admin Configuration or Batch Manager
CVSS 8.8