oss-sec mailing list archives

CVE request: piwigo before 2.6.3 sql injection


From: Hanno Böck <hanno () hboeck de>
Date: Mon, 23 Jun 2014 14:23:52 +0200

The Piwigo image gallery contains an sql injection before versions
2.6.3 and 2.7.0_beta2


Upstream bug:
http://piwigo.org/bugs/view.php?id=3089

commit:
http://piwigo.org/dev/changeset/28678

release notes:
http://piwigo.org/forum/viewtopic.php?id=24009

Please assign a CVE.

-- 
Hanno Böck
http://hboeck.de/

mail/jabber: hanno () hboeck de
GPG: BBB51E42

Attachment: signature.asc
Description:


Current thread: