CVE-2013-4557
Published Nov 18, 2013
Last updated 8 years ago
Overview
- Description
- The Security Screen (_core_/securite/ecran_securite.php) before 1.1.8 for SPIP, as used in SPIP 3.0.x before 3.0.12, allows remote attackers to execute arbitrary PHP via the connect parameter.
- Source
- secalert@redhat.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-94
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:spip:spip:3.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DEACDF93-E23D-4DD8-8404-1A9FF6E30AD6" }, { "criteria": "cpe:2.3:a:spip:spip:3.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F4037A30-ECB1-4416-B2C4-11C74C862922" }, { "criteria": "cpe:2.3:a:spip:spip:3.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0940E772-693A-4C37-843D-26FE94F2A872" }, { "criteria": "cpe:2.3:a:spip:spip:3.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "12D453E4-AD84-499D-AC00-16B609F4B2ED" }, { "criteria": "cpe:2.3:a:spip:spip:3.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4D991DBB-7AD1-4BEA-B18F-078D23EAFA36" }, { "criteria": "cpe:2.3:a:spip:spip:3.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3D5309CE-6C06-45F2-9C13-F1A4926D480E" }, { "criteria": "cpe:2.3:a:spip:spip:3.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FD45F13F-DD59-4A15-8A40-DE918FEF9A80" }, { "criteria": "cpe:2.3:a:spip:spip:3.0.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D9962195-7B5C-43F1-B5C9-982F1D422804" }, { "criteria": "cpe:2.3:a:spip:spip:3.0.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "11285E4F-DF81-4994-B269-B382ECC690D9" }, { "criteria": "cpe:2.3:a:spip:spip:3.0.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "284DD051-7E34-4AA4-90D4-B63071F04B18" }, { "criteria": "cpe:2.3:a:spip:spip:3.0.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B5717886-316C-4FDE-99E3-E4F90C9C5137" }, { "criteria": "cpe:2.3:a:spip:spip:3.0.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "43340829-7234-419A-A221-AC496B08C34D" } ], "operator": "OR" } ] } ]