Description
SQL Injection vulnerability in admin/user_perm.php in piwigo v2.9.5, via the cat_false parameter to admin.php?page=group_perm.
Remediation
References
Related Vulnerabilities
Piwigo Improper Access Control Vulnerability (CVE-2016-10085)
OpenSSL Improper Authentication Vulnerability (CVE-2009-1390)
WordPress Plugin Smart Manager for WooCommerce & WpeC Multiple Unspecified Vulnerabilities (3.9.13)
WordPress Plugin VIDEO GALLERY 'upload1.php' Arbitrary File Upload (1.3)
WordPress Plugin WP Page Builder Cross-Site Scripting (1.2.6)