CVE
- Id
- 87606
- CVE No.
- CVE-2016-10105
- Status
- Candidate
- Description
- admin/plugin.php in Piwigo through 2.8.3 doesn"t validate the sections variable while using it to include files. This can cause information disclosure and code execution if it contains a .. sequence.
- Phase
- Assigned (20170102)
- Votes
- None (candidate not yet proposed)
- Comments