SQL Injection Vulnerability in Piwigo 11.5.0 by Piwigo Team
CVE-2021-40317
8.8HIGH
What is CVE-2021-40317?
The Piwigo 11.5.0 version contains a SQL injection vulnerability that can be exploited through the admin.php page, specifically affecting the id parameter. This flaw allows attackers to manipulate database queries, potentially exposing sensitive information and leading to unauthorized data access. Users are advised to update to a secure version to mitigate risks associated with this vulnerability.