Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
zblogcn z-blogphp 2.0.0 vulnerabilities and exploits
(subscribe to this query)
4.8
CVSSv3
CVE-2018-11208
An issue exists in Z-BlogPHP 2.0.0. There is a persistent XSS that allows remote malicious users to inject arbitrary web script or HTML into background web site settings via the "copyright information office" field. NOTE: the vendor indicates that the product was not in...
Zblogcn Z-blogphp 2.0.0
7.2
CVSSv3
CVE-2018-11209
An issue exists in Z-BlogPHP 2.0.0. zb_system/cmd.php?act=verify relies on MD5 for the password parameter, which might make it easier for malicious users to bypass intended access restrictions via a dictionary or rainbow-table attack. NOTE: the vendor declined to accept this as a...
Zblogcn Z-blogphp 2.0.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-27322
administrator privileges
CVE-2024-1579
hardcoded
CVE-2023-20198
CVE-2024-33587
CVE-2024-33449
CVE-2024-4308
HTML injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started