Description
Piwigo 11.4.0 allows admin/user_list_backend.php order[0][dir] SQL Injection.
Remediation
References
Related Vulnerabilities
Oracle Database Server CVE-2011-2239 Vulnerability (CVE-2011-2239)
MySQL CVE-2014-0420 Vulnerability (CVE-2014-0420)
MySQL CVE-2019-2834 Vulnerability (CVE-2019-2834)
Drupal Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2017-6926)
WordPress Plugin Download Plugin Arbitrary Directory Download (1.0.1)