CVE-2023-24258
- Reference to the description:
- Description:
- SPIP v4.1.5 and earlier was discovered to contain a SQL injection vulnerability via the _oups parameter. This vulnerability allows attackers to execute arbitrary code via a crafted POST request.
- Last updated date:
- 03/24/2023
- Type:
- exploit
- Confidence:
- HIGH
- Date of publishing:
- 03/09/2023