{"$ref":"https://www.cert.ssi.gouv.fr/openapi.json","affected_systems":[{"description":"Toutes les versions 2.1.x de SPIP ant\u00e9rieures \u00e0 2.1.9 ;","product":{"name":"SPIP","vendor":{"name":"SPIP","scada":false}}},{"description":"toutes les versions 2.0.x de SPIP ant\u00e9rieures \u00e0 2.0.14 ;","product":{"name":"SPIP","vendor":{"name":"SPIP","scada":false}}},{"description":"toutes les versions 1.9.x de SPIP ant\u00e9rieures \u00e0 1.9.2j.","product":{"name":"SPIP","vendor":{"name":"SPIP","scada":false}}}],"affected_systems_content":null,"content":"## Description\n\nUne vuln\u00e9rabilit\u00e9, non d\u00e9taill\u00e9e par l'\u00e9diteur, a \u00e9t\u00e9 d\u00e9couverte dans\nSPIP. L'exploitation de celle-ci permet de r\u00e9aliser des injections de\ncode indirectes.\n\n## Solution\n\nMettre SPIP \u00e0 jour en version 2.1.9, 2.0.14 ou 1.9.2j.\n","cves":[],"links":[],"reference":"CERTA-2011-AVI-170","revisions":[{"description":"version initiale.","revision_date":"2011-03-28T00:00:00.000000"}],"risks":[{"description":"Injection de code indirecte \u00e0 distance"}],"summary":"Une vuln\u00e9rabilit\u00e9 dans <span class=\"textit\">SPIP</span> permet de\nr\u00e9aliser des injections de code indirectes.\n","title":"Vuln\u00e9rabilit\u00e9 dans SPIP","vendor_advisories":[{"published_at":null,"title":"Annonce de la version 2.1.9 de SPIP du 25 mars 2011","url":"http://www.spip-contrib.net/Mise-a-jour-de-securite-SPIP-2-1-9"}]}
