cve/2022/CVE-2022-24620.md
2024-06-18 02:51:15 +02:00

660 B

CVE-2022-24620

Description

Piwigo version 12.2.0 is vulnerable to stored cross-site scripting (XSS), which can lead to privilege escalation. In this way, admin can steal webmaster's cookies to get the webmaster's access.

POC

Reference

Github

No PoCs found on GitHub currently.