Security Advisory

CVE-2013-7242

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2013-12-31 11:00:00
Last updated 2024-08-06 18:01:20
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

SQL injection vulnerability in zp-core/zp-extensions/wordpress_import.php in Zenphoto before 1.4.5.4 allows remote authenticated administrators to execute arbitrary SQL commands via the tableprefix parameter.