Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
blog vulnerabilities and exploits
(subscribe to this query)
755
VMScore
CVE-2008-0360
Multiple SQL injection vulnerabilities in BLOG:CMS 4.2.1b allow remote malicious users to execute arbitrary SQL commands via (1) the blogid parameter to index.php, (2) the user parameter to action.php, or (3) the field parameter to admin/plugins/table/index.php.
Blog Cms Blog Cms 4.2.1 C
1 EDB exploit
668
VMScore
CVE-2008-0450
Multiple PHP remote file inclusion vulnerabilities in BLOG:CMS 4.2.1.c allow remote malicious users to execute arbitrary PHP code via a URL in the (1) DIR_PLUGINS parameter to (a) index.php, and the (2) DIR_LIBS parameter to (b) media.php and (c) xmlrpc/server.php in admin/.
Blog Cms Blog Cms 4.2.1 C
383
VMScore
CVE-2020-18999
Cross Site Scripting (XSS) in Blog_mini v1.0 allows remote malicious users to execute arbitrary code via the component '/admin/submit-articles'.
Blog Mini Project Blog Mini 1.0
668
VMScore
CVE-2022-28512
A SQL injection vulnerability exists in Sourcecodester Fantastic Blog CMS 1.0 . An attacker can inject query in "/fantasticblog/single.php" via the "id=5" parameters.
Fantastic Blog Project Fantastic Blog 1.0
1 Github repository
383
VMScore
CVE-2021-26224
Cross-site scripting (XSS) vulnerability in SourceCodester Fantastic-Blog-CMS V 1.0 allows remote malicious users to inject arbitrary web script or HTML via the search field to search.php.
Fantastic Blog Project Fantastic Blog 1.0
435
VMScore
CVE-2007-3888
Multiple cross-site scripting (XSS) vulnerabilities in Insanely Simple Blog 0.5 and previous versions allow remote malicious users to inject arbitrary web script or HTML via (1) the search action, possibly related to the term parameter to index.php; or (2) an anonymous blog entry...
Insanely Simple Blog Insanely Simple Blog
1 EDB exploit
755
VMScore
CVE-2007-3889
Multiple SQL injection vulnerabilities in Insanely Simple Blog 0.5 and previous versions allow remote malicious users to execute arbitrary SQL commands via the current_subsection parameter to index.php and other unspecified vectors.
Insanely Simple Blog Insanely Simple Blog
1 EDB exploit
505
VMScore
CVE-2004-1212
Directory traversal vulnerability in btdownload.php in Blog Torrent preview 0.8 allows remote malicious users to download arbitrary files via a .. (dot dot) in the file argument.
Blog Torrent Blog Torrent Preview 0.8
1 EDB exploit
383
VMScore
CVE-2020-18998
Cross Site Scripting (XSS) in Blog_mini v1.0 allows remote malicious users to execute arbitrary code via the component '/admin/custom/blog-plugin/add'.
Blog Mini Project Blog Mini 1.0
755
VMScore
CVE-2007-5272
SQL injection vulnerability in kategori.asp in Furkan Tastan Blog allows remote malicious users to execute arbitrary SQL commands via the id parameter in a goster kat action.
Furkan Tastan Blog Furkan Tastan Blog
1 EDB exploit
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
path traversal
CVE-2024-33545
CVE-2024-35725
CVE-2024-32704
overflow
file upload
CVE-2024-0230
CVE-2024-32705
CVE-2024-23692
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
10
NEXT »