CVE-2016-9997

Publication date

2016-12-17 03:34:00

Family

mitre

State

PUBLISHED

Description

SPIP 3.1.x suffers from a Reflected Cross Site Scripting Vulnerability in /ecrire/exec/puce_statut.php involving the `$id` parameter, as demonstrated by a /ecrire/?exec=puce_statut URL.