CVE-2006-1702: High severity Spip SPIP vulnerability
Published Apr 11, 2006
·Updated
PHP remote file inclusion vulnerability in spiplogin.php3 in SPIP 1.8.3 allows remote attackers to execute arbitrary PHP code via a URL in the url parameter.
Affected Software
1 affected component
Spip SPIP=1.8.3
Event History
Apr 11, 2006
CVE Published
10:02 AM
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-1702?
CVE-2006-1702 has a high severity rating due to its potential for arbitrary PHP code execution.
2
How do I fix CVE-2006-1702?
To fix CVE-2006-1702, you should upgrade SPIP to a version higher than 1.8.3 that does not include this vulnerability.
3
What systems are affected by CVE-2006-1702?
CVE-2006-1702 specifically affects SPIP version 1.8.3.
4
What type of vulnerability is CVE-2006-1702?
CVE-2006-1702 is classified as a remote file inclusion vulnerability.
5
Can CVE-2006-1702 be exploited remotely?
Yes, CVE-2006-1702 can be exploited remotely by attackers through the url parameter in spip_login.php3.