Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2022-09253
HistoryJan 28, 2022 - 12:00 a.m.

SPIP interfaces.php cross-site scripting vulnerability

2022-01-2800:00:00
China National Vulnerability Database
www.cnvd.org.cn
75

0.001 Low

EPSS

Percentile

22.7%

SPIP is a web-based content publishing system. A cross-site scripting vulnerability exists in SPIP, which stems from a lack of proper validation of client-side data in the interfaces.php component of the WEB application. An attacker could exploit this vulnerability to execute client-side code.

CPENameOperatorVersion
spip spipeq4.0.0

0.001 Low

EPSS

Percentile

22.7%