SPIP before 3.2.14 and 4.x before 4.0.5 allows remote authenticated editors to execute arbitrary code.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Spip | Spip | * | 3.2.14 (excluding) |
Spip | Spip | 4.0.0 (including) | 4.0.5 (excluding) |
Spip | Ubuntu | bionic | * |
Spip | Ubuntu | esm-apps/focal | * |
Spip | Ubuntu | esm-apps/jammy | * |
Spip | Ubuntu | focal | * |
Spip | Ubuntu | impish | * |
Spip | Ubuntu | jammy | * |
Spip | Ubuntu | kinetic | * |
Spip | Ubuntu | trusty | * |
Spip | Ubuntu | upstream | * |
Spip | Ubuntu | xenial | * |