← Back

CVE-2013-2633

nvd nist
Published: Mar 21, 2013Modified: Apr 29, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

Piwik before 1.11 accepts input from a POST request instead of a GET request in unspecified circumstances, which might allow attackers to obtain sensitive information by leveraging the logging of parameters.

Affected (21)

Products: Matomo: Matomo
1 product
Matomo
Configuration A
21 vulnerable
Vulnerable SoftwareAffected Versions
Matomo
Up to 1.10.1
Version 1.0
Version 1.1.1
Version 1.10
Version 1.1
Version 1.2.1
Version 1.2
Version 1.3
Version 1.4
Version 1.5.1
Version 1.5
Version 1.6
Version 1.7.1
Version 1.7
Version 1.8.1
Version 1.8.2
Version 1.8.3
Version 1.8.4
Version 1.8
Version 1.9.1
Version 1.9.2

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.