A cross-site scripting (XSS) vulnerability in the Article module of SPIP v4.3.3 allows authenticated attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the Title parameter.
We have discovered 7,315 live websites that are affected by CVE-2024-53620.
Product | |
Category | Content Management System |
Vulnerable Domains | 7,315 live websites (75.89% of SPIP install base) |
Vulnerable Versions |
|
Vulnerable Versions Count | 154 versions ( 96.86% of all versions) |
![]() | 512 websites |
![]() | 5,430 websites |
![]() | 308 websites |
![]() | 246 websites |
![]() | 184 websites |
![]() | 117 websites |
![]() | 112 websites |
![]() | 67 websites |
![]() | 45 websites |
![]() | 45 websites |
.fr | 2,411 websites |
.com | 1,888 websites |
.org | 1,242 websites |
.net | 491 websites |
.be | 294 websites |
.eu | 185 websites |
.info | 116 websites |
.it | 96 websites |
.ch | 84 websites |
.de | 47 websites |
Domain | Country | Rank | Contacts |
---|---|---|---|
*****************.fr | ![]() | **,*** | |
******************.fr | ![]() | **,*** | |
**********.com | ![]() | **,*** | |
****.org | ![]() | **,*** | |
*****.fr | ![]() | **,*** | |
******.net | ![]() | **,*** | |
********.fr | ![]() | **,*** | |
************.***********.****.fr | ![]() | **,*** | |
******************.fr | ![]() | **,*** | |
***********.org | ![]() | **,*** |
FAQ