Description
SQL Injection vulnerability in cat_move.php in piwigo v2.9.5, via the selection parameter to move_categories.
Remediation
References
Related Vulnerabilities
WordPress Plugin WPE Indoshipping Multiple Remote File Inclusion Vulnerabilities (2.5.0)
PleskLin Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2013-0132)
MediaWiki Improper Encoding or Escaping of Output Vulnerability (CVE-2020-35475)
Apache Tomcat Improper Encoding or Escaping of Output Vulnerability (CVE-2021-30640)
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2009-4018)