CVE-2019-19830
17.12.2019, 05:15
_core_/plugins/medias in SPIP 3.2.x before 3.2.7 allows remote authenticated authors to inject content into the database.Enginsight
Vendor | Product | Version |
---|---|---|
spip | spip | 3.2.0 ≤ 𝑥 < 3.2.7 |
debian | debian_linux | 9.0 |
debian | debian_linux | 10.0 |
canonical | ubuntu_linux | 18.04 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
References