Cross-site scripting (XSS) vulnerability in the administrative backend in Piwigo before 2.7.4 allows remote attackers to inject arbitrary web script or HTML via the page parameter to admin.php.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2015-02-20T16:00:00
Updated: 2024-08-06T05:02:43.269Z
Reserved: 2015-02-19T00:00:00
Link: CVE-2015-2034
Vulnrichment
No data.
NVD
Status : Modified
Published: 2015-02-20T16:59:06.350
Modified: 2024-11-21T02:26:37.610
Link: CVE-2015-2034
Redhat
No data.