CVE-2019-13363
- Reference to the description:
- Description:
- admin.php?page=notification_by_mail in Piwigo 2.9.5 has XSS via the nbm_send_html_mail, nbm_send_mail_as, nbm_send_detailed_content, nbm_complementary_mail_content, nbm_send_recent_post_dates, or param_submit parameter. This is exploitable via CSRF.
- Last updated date:
- 02/28/2023
- Type:
- exploit
- Confidence:
- HIGH
- Date of publishing:
- 08/24/2020
- Reference url to background
- Type:
- exploit
- Confidence:
- HIGH
- Date of publishing:
- 02/28/2023
- Type:
- exploit
- Confidence:
- HIGH
- Date of publishing:
- 02/28/2023
- Reference url to background