Description
SQL Injection vulnerability in admin/batch_manager.php in piwigo v2.9.5, via the filter_category parameter to admin.php?page=batch_manager.
Remediation
References
Related Vulnerabilities
WordPress Plugin Theme Blvd Layout Builder Multiple Security Bypass Vulnerabilities (2.0.1)
Magento Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2019-7925)
Jboss EAP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2013-4112)
WordPress Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2014-5205)