Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
pluxml pluxml vulnerabilities and exploits
(subscribe to this query)
312
VMScore
CVE-2022-25020
A cross-site scripting (XSS) vulnerability in Pluxml v5.8.7 allows malicious users to execute arbitrary web scripts or HTML via a crafted payload in the thumbnail path of a blog post.
Pluxml Pluxml 5.8.7
NA
CVE-2024-22636
PluXml Blog v5.8.9 exists to contain a remote code execution (RCE) vulnerability in the Static Pages feature. This vulnerability is exploited via injecting a crafted payload into the Content field.
Pluxml Pluxml 5.8.9
755
VMScore
CVE-2007-3432
Unrestricted file upload vulnerability in admin/images.php in Pluxml 0.3.1 allows remote malicious users to upload and execute arbitrary PHP code via a .jpg filename.
Pluxml Pluxml 0.3.1
1 EDB exploit
435
VMScore
CVE-2007-3542
Cross-site scripting (XSS) vulnerability in admin/auth.php in Pluxml 0.3.1 allows remote malicious users to inject arbitrary web script or HTML via the msg parameter.
Pluxml Pluxml 0.3.1
1 EDB exploit
312
VMScore
CVE-2017-1001001
PluXml version 5.6 is vulnerable to stored cross-site scripting vulnerability, within the article creation page, which can result in escalation of privileges.
Pluxml Pluxml 5.6
578
VMScore
CVE-2020-18184
In PluxXml V5.7,the theme edit function /PluXml/core/admin/parametres_edittpl.php allows remote malicious users to execute arbitrary PHP code by placing this code into a template.
Pluxxml Pluxxml 5.7
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
authentication bypass
CVE-2024-30051
remote
CVE-2024-27954
CVE-2023-51483
CVE-2023-47782
SSRF
CVE-2024-24715
CVE-2023-52424
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2