CVE-2018-5692
Piwigo v2.8.2 has XSS via the `tab`, `to`, `section`, `mode`, `installstatus`, and `display` parameters of the `admin.php` file.
- Affected products
- Piwigo
- Piwigo
- = 2.8.2
- Fix
- Available
- CVSS 3.0
- 6.1 MEDIUM
- EPSS
- 0.7% (51th percentile)
- Weakness
- CWE-79
- NVD status
- Modified
- Published
- 2018-01-14
CVE-2018-5692 at NVD
2 known exploits for CVE-2018-5692
Proof-of-concept code and exploit modules indexed by Sploitus