Medium severity6.1NVD Advisory· Published Jun 14, 2017· Updated May 13, 2026
CVE-2017-9464
CVE-2017-9464
Description
An open redirect vulnerability is present in Piwigo 2.9 and probably prior versions, allowing remote attackers to redirect users to arbitrary web sites and conduct phishing attacks. The identification.php component is affected by this issue: the "redirect" parameter is not validated.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
2- github.com/Piwigo/Piwigo/issues/706nvdIssue TrackingPatchThird Party Advisory
- www.wizlynxgroup.com/security-research-advisories/vuln/WLX-2017-007nvdIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.