SPIP 在 4.4.18 之前版本中存在一个授权缺失漏洞,位于 下的管理操作端点。该漏洞允许未认证的通过提供一个有效的 HMAC-SHA256 nonce,在未经过服务器端 权限检查的情况下,执行特权操作。攻击者可以以匿名用户身份为任意操作计算有效的 nonce,然后通过 HTTP 直接调用 操作,从而重置任意用户账户(包括管理员账户)的密码。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-72710 | 9.8 CRITICAL | SPIP < 4.4.18 Remote Code Execution via editer_objet.php Job Queue Injection |
| CVE-2026-72708 | 7.5 HIGH | SPIP < 4.4.18 Unauthenticated SQL Injection via sitemap annee Parameter |
No comments yet