oss-sec mailing list archives

SPIP vulnerabilities: request for 5 CVE


From: Sysdream Labs <labs () sysdream com>
Date: Wed, 5 Oct 2016 20:13:12 +0200

Hello,

We need 5 CVE ID for the following vulnerabilities found in SPIP <= 3.1.2 (http://www.spip.net/):

* Template Compiler/Composer PHP Code Execution
* Cross-Site Request Forgery
* Reflected Cross-Site Scripting
* File Enumeration / Path Traversal
* Server Side Request Forgery

Thank you in advance,


Best regards,

-- 
SYSDREAM Labs <labs () sysdream com>

GPG :
47D1 E124 C43E F992 2A2E
1551 8EB4 8CD9 D5B2 59A1

* Website: https://sysdream.com/
* Twitter: @sysdream

Attachment: signature.asc
Description: OpenPGP digital signature


Current thread: