CVE-2022-28961

Spip Web Framework v3.1.13 and below was discovered to contain multiple SQL injection vulnerabilities at /ecrire via the lier_trad and where parameters.
Configurations

Configuration 1 (hide)

cpe:2.3:a:spip:spip:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2022-05-19 21:15

Updated : 2024-02-28 19:09


NVD link : CVE-2022-28961

Mitre link : CVE-2022-28961

CVE.ORG link : CVE-2022-28961


JSON object : View

Products Affected

spip

  • spip
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')