Cross-site request forgery (CSRF) vulnerability in the LocalFiles Editor plugin in Piwigo before 2.4.7 allows remote attackers to hijack the authentication of administrators for requests that create arbitrary PHP files via unspecified vectors.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2013-03-12T16:00:00Z

Updated: 2024-09-16T16:38:45.778Z

Reserved: 2013-01-29T00:00:00Z

Link: CVE-2013-1468

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2013-03-14T03:13:32.660

Modified: 2013-10-03T18:49:37.977

Link: CVE-2013-1468

cve-icon Redhat

No data.