Lucene search

K
githubexploitEF2A7063-FD7C-5415-8466-45EB54FE187B
HistoryJul 05, 2023 - 2:41 p.m.

Exploit for CVE-2023-27372

2023-07-0514:41:03
526
spip rce vulnerability
deserialization flaw
spip_pass feature
manual exploitation
patch
input validation
sanitization

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

9.8

Confidence

High

EPSS

0.974

Percentile

99.9%

This PoC was wrote quickly, it’s nothing special.

This e…

This is an article that belongs to githubexploit private collection.
Please sign in to get more Information.

CVSS3

9.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

AI Score

9.8

Confidence

High

EPSS

0.974

Percentile

99.9%