Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gxmj-pr3w-6wmh

Опубликовано: 26 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.7
CVSS3: 7.5

Описание

SPIP versions prior to 4.4.10 contain an authentication bypass vulnerability caused by PHP type juggling that allows unauthenticated attackers to access protected information. Attackers can exploit loose type comparisons in authentication logic to bypass login verification and retrieve sensitive internal data.

SPIP versions prior to 4.4.10 contain an authentication bypass vulnerability caused by PHP type juggling that allows unauthenticated attackers to access protected information. Attackers can exploit loose type comparisons in authentication logic to bypass login verification and retrieve sensitive internal data.

EPSS

Процентиль: 60%
0.00388
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-288

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 1 месяца назад

SPIP versions prior to 4.4.10 contain an authentication bypass vulnerability caused by PHP type juggling that allows unauthenticated attackers to access protected information. Attackers can exploit loose type comparisons in authentication logic to bypass login verification and retrieve sensitive internal data.

CVSS3: 7.5
nvd
около 1 месяца назад

SPIP versions prior to 4.4.10 contain an authentication bypass vulnerability caused by PHP type juggling that allows unauthenticated attackers to access protected information. Attackers can exploit loose type comparisons in authentication logic to bypass login verification and retrieve sensitive internal data.

CVSS3: 7.5
debian
около 1 месяца назад

SPIP versions prior to 4.4.10 contain an authentication bypass vulnera ...

EPSS

Процентиль: 60%
0.00388
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-288