CVE-2015-2035
Publication date 20 February 2015
Last updated 24 July 2024
Ubuntu priority
Description
SQL injection vulnerability in the administrative backend in Piwigo before 2.7.4 allows remote administrators to execute arbitrary SQL commands via the user parameter in the history page to admin.php.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| piwigo | ||
| 16.04 LTS xenial | Not in release | |
| 14.04 LTS trusty | Not in release | |