Description
SQL Injection vulnerability in admin/user_perm.php in piwigo v2.9.5, via the cat_false parameter to admin.php?page=user_perm.
Remediation
References
Related Vulnerabilities
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-3394)
Chamilo Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2023-4225)
Oracle HTTP Server Other Vulnerability (CVE-2006-5349)
WordPress Plugin Mass Delete Unused Tags Cross-Site Request Forgery (2.0.0)