Description
SQL injection vulnerability in index.php in Zenphoto 1.2.5 allows remote attackers to execute arbitrary SQL commands via the title parameter in a news action. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP Database Backup Cross-Site Request Forgery (5.1.2)
MySQL CVE-2021-2042 Vulnerability (CVE-2021-2042)
Joomla! Core 2.5.0 Information Disclosure (2.5.0)
WordPress Plugin WP DoNotTrack Cross-Site Scripting (0.8.8)
WordPress Plugin Media File Manager Advanced Multiple Vulnerabilities (1.1.5)