CVE-2022-26267

Severity CVSS v4.0:
Pending analysis
Type:
CWE-306 Missing Authentication for Critical Function
Publication date:
18/03/2022
Last modified:
08/08/2023

Description

Piwigo v12.2.0 was discovered to contain an information leak via the action parameter in /admin/maintenance_actions.php.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:piwigo:piwigo:12.2.0:*:*:*:*:*:*:*