CVE-2023-24258 | SPIP up to 4.1.5 POST Request _oups sql injection (EUVD-2023-28315)
A vulnerability classified as critical has been found in SPIP up to 4.1.5. The impacted element is an unknown function of the component POST Request Handler. This manipulation of the argument _oups causes sql injection.
The identification of this vulnerability is CVE-2023-24258. The attack needs to be done within the local network. There is no exploit available.