Log in

View Full Version : Piwigo SQL Injection Vulnerability



newsbot
24-08-2009, 11:43 AM
Piwigo is a photo gallery application written in PHP. The application suffers from a SQL injection vulnerability in comments.php, as it fails to validate data supplied in the "items_number" variable before being used in an SQL query.

-</p>

Make your website safer. Use external penetration testing (http://www.beyondsecurity.com/penetration-testing.html) service. First report ready in one hour!</p>

**Hidden Content: Check the thread to see hidden data.**