Description
Piwigo 11.4.0 allows admin/user_list_backend.php order[0][dir] SQL Injection.
Remediation
References
Related Vulnerabilities
WordPress Plugin Login With Ajax Cross-Site Request Forgery (3.0.4.1)
Craft CMS CVE-2025-32432 Vulnerability (CVE-2025-32432)
MediaWiki Improper Authentication Vulnerability (CVE-2014-2665)
Moodle CVE-2019-3852 Vulnerability (CVE-2019-3852)
PHP Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2006-4812)