High severity7.2NVD Advisory· Published Dec 30, 2016· Updated May 6, 2026
CVE-2016-10084
CVE-2016-10084
Description
admin/batch_manager.php in Piwigo through 2.8.3 allows remote authenticated administrators to conduct File Inclusion attacks via the $page['tab'] variable (aka the mode parameter).
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
3- github.com/Piwigo/Piwigo/commit/9dd92959f6975099e0c62163a846a4648a6a920fnvdIssue TrackingPatchThird Party Advisory
- github.com/Piwigo/Piwigo/issues/572nvdIssue TrackingPatchThird Party Advisory
- www.securityfocus.com/bid/95164nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.