Логотип exploitDog
bind:CVE-2023-53900
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-53900

Количество 4

Количество 4

ubuntu логотип

CVE-2023-53900

около 2 месяцев назад

Spip 4.1.10 contains a file upload vulnerability that allows attackers to upload malicious SVG files with embedded external links. Attackers can trick administrators into clicking a crafted SVG logo that redirects to a potentially dangerous URL through improper file upload filtering.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2023-53900

около 2 месяцев назад

Spip 4.1.10 contains a file upload vulnerability that allows attackers to upload malicious SVG files with embedded external links. Attackers can trick administrators into clicking a crafted SVG logo that redirects to a potentially dangerous URL through improper file upload filtering.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2023-53900

около 2 месяцев назад

Spip 4.1.10 contains a file upload vulnerability that allows attackers ...

CVSS3: 8.8
EPSS: Низкий
github логотип

GHSA-3w5m-3c69-745h

около 2 месяцев назад

Spip 4.1.10 contains a file upload vulnerability that allows attackers to upload malicious SVG files with embedded external links. Attackers can trick administrators into clicking a crafted SVG logo that redirects to a potentially dangerous URL through improper file upload filtering.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2023-53900

Spip 4.1.10 contains a file upload vulnerability that allows attackers to upload malicious SVG files with embedded external links. Attackers can trick administrators into clicking a crafted SVG logo that redirects to a potentially dangerous URL through improper file upload filtering.

CVSS3: 8.8
0%
Низкий
около 2 месяцев назад
nvd логотип
CVE-2023-53900

Spip 4.1.10 contains a file upload vulnerability that allows attackers to upload malicious SVG files with embedded external links. Attackers can trick administrators into clicking a crafted SVG logo that redirects to a potentially dangerous URL through improper file upload filtering.

CVSS3: 8.8
0%
Низкий
около 2 месяцев назад
debian логотип
CVE-2023-53900

Spip 4.1.10 contains a file upload vulnerability that allows attackers ...

CVSS3: 8.8
0%
Низкий
около 2 месяцев назад
github логотип
GHSA-3w5m-3c69-745h

Spip 4.1.10 contains a file upload vulnerability that allows attackers to upload malicious SVG files with embedded external links. Attackers can trick administrators into clicking a crafted SVG logo that redirects to a potentially dangerous URL through improper file upload filtering.

CVSS3: 8.8
0%
Низкий
около 2 месяцев назад

Уязвимостей на страницу