SQL Injection Vulnerability in Piwigo by Piwigo Team
CVE-2022-32297
7.5HIGH
What is CVE-2022-32297?
Piwigo v12.2.0 presents a SQL injection vulnerability through its Search function, potentially allowing attackers to execute arbitrary SQL queries. This security flaw may lead to unauthorized access to sensitive data within the database, posing significant risks for administrators and users alike. It is essential to patch this vulnerability to safeguard against potential exploitation.