Photoview through 2.4.0 SQL Injection via album download route
21Vexday Risk Score
Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.
ssvc Trackcvss 8.7epss 0.4%
probabilidad de explotación
0.4%top 67% de las CVE
explotación observada
noninguna fuente lo reporta
Photoview through 2.4.0 contains an SQL injection vulnerability in the album download route that allows unauthenticated attackers to inject SQL by manipulating the album_id path segment. Attackers can supply crafted SQL expressions in the album_id parameter to extract arbitrary data from the database using time-based or blind injection techniques.
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
Productos afectados
Photoview · PhotoviewReferencias
https://github.com/photoview/photoviewhttps://github.com/photoview/photoview/blob/v2.4.0/api/routes/downloads.go#L19-L29https://github.com/photoview/photoview/commit/deb1b216e047a30803dc0f48a9fc3d4c4abda594https://github.com/photoview/photoview/pull/1453https://hackmd.io/@leediay/sqli-in-download-photoviewhttps://www.vulncheck.com/advisories/photoview-through-2.4.0-sql-injection-via-album-download-route