CVE

CVE-2016-9998 (spip)

CVE-2016-9998 (spip)

SPIP 3.1.x suffer from a Reflected Cross Site Scripting Vulnerability in /ecrire/exec/info_plugin.php involving the `$plugin` parameter, as demonstrated by a /ecrire/?exec=info_plugin URL.

Source: CVE-2016-9998 (spip)

Exit mobile version