Vulnerability index

Browse CVEs

8 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Spip MEDIUM 6.1
CVE-2023-53900

Spip 4.1.10 contains a file upload vulnerability that allows attackers to upload malicious SVG files with embedded external links. Attackers can tric…

No fix yet
Fix from $1,600 2025-12-16
Spip MEDIUM 6.3
CVE-2024-53619

An authenticated arbitrary file upload vulnerability in the Documents module of SPIP v4.3.3 allows attackers to execute arbitrary code via uploading …

No fix yet
Fix from $1,600 2024-11-26
Spip HIGH 7.5
CVE-2013-2118EPSS 9%

SPIP 3.0.x before 3.0.9, 2.1.x before 2.1.22, and 2.0.x before 2.0.23 allows remote attackers to gain privileges and "take editorial control" via vec…

Mitigation only
Fix from $1,950 2013-07-09
Spip HIGH 10.0
CVE-2012-4331

Multiple unspecified vulnerabilities in SPIP before 1.9.2.o, 2.0.x before 2.0.18, and 2.1.x before 2.1.13 have unknown impact and attack vectors that…

No fix yet
Fix from $1,950 2012-08-14
Spip HIGH 7.5
CVE-2007-4525

PHP remote file inclusion vulnerability in inc-calcul.php3 in SPIP 1.7.2 allows remote attackers to execute arbitrary PHP code via a URL in the squel…

Mitigation only
Fix from $1,950 2007-08-25
Spip HIGH 7.5
CVE-2006-1702

PHP remote file inclusion vulnerability in spip_login.php3 in SPIP 1.8.3 allows remote attackers to execute arbitrary PHP code via a URL in the url p…

No fix yet
Fix from $1,950 2006-04-11
Spip HIGH 7.5
CVE-2006-0626

SQL injection vulnerability in spip_acces_doc.php3 in SPIP 1.8.2g and earlier allows remote attackers to execute arbitrary SQL commands via the file …

No fix yet
Fix from $1,950 2006-02-09
Spip MEDIUM 6.4
CVE-2006-0625

Directory traversal vulnerability in Spip_RSS.PHP in SPIP 1.8.2g and earlier allows remote attackers to read or include arbitrary files via ".." seq…

No fix yet
Fix from $1,600 2006-02-09