Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2023-24258
Description:SPIP v4.1.5 and earlier was discovered to contain a SQL injection vulnerability via the _oups parameter. This vulnerability allows attackers to execute arbitrary code via a crafted POST request.
Test IDs: 1.3.6.1.4.1.25623.1.0.170330   1.3.6.1.4.1.25623.1.0.705325  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2023-24258
Debian Security Information: DSA-5325 (Google Search)
https://www.debian.org/security/2023/dsa-5325
https://blog.spip.net/Mise-a-jour-de-securite-sortie-de-SPIP-4-1-7-SPIP-4-0-9-et-SPIP-3-2-17.html
https://github.com/Abyss-W4tcher/ab4yss-wr4iteups/blob/ffa980faa9e3598d49d6fb7def4f7a67cfb5f427/SPIP%20-%20Pentest/SPIP%204.1.5/SPIP_4.1.5_AND_BEFORE_AUTH_SQLi_Abyss_Watcher.md




© 1998-2025 E-Soft Inc. All rights reserved.