Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
emlog vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv3
CVE-2019-17073
emlog up to and including 6.0.0beta allows remote authenticated users to delete arbitrary files via admin/template.php?action=del&tpl=../ directory traversal.
Emlog Emlog 6.0.0
Emlog Emlog
9.8
CVSSv3
CVE-2019-16868
emlog up to and including 6.0.0beta has an arbitrary file deletion vulnerability via an admin/data.php?action=dell_all_bak request with directory traversal sequences in the bak[] parameter.
Emlog Emlog
Emlog Emlog 6.0.0
9.8
CVSSv3
CVE-2023-43291
Deserialization of Untrusted Data in emlog pro v.2.1.15 and previous versions allows a remote malicious user to execute arbitrary code via the cache.php component.
Emlog Emlog
6.1
CVSSv3
CVE-2022-3968
A vulnerability has been found in emlog and classified as problematic. Affected by this vulnerability is an unknown functionality of the file admin/article_save.php. The manipulation of the argument tag leads to cross site scripting. The attack can be launched remotely. The name ...
Emlog Emlog
5.4
CVSSv3
CVE-2022-1526
A vulnerability, which was classified as problematic, was found in Emlog Pro up to 1.2.2. This affects the POST parameter handling of articles. The manipulation with the input <script>alert(1);</script> leads to cross site scripting. It is possible to initiate the att...
Emlog Emlog
6.1
CVSSv3
CVE-2021-44584
Cross-site scripting (XSS) vulnerability in index.php in emlog version <= pro-1.0.7 allows remote malicious users to inject arbitrary web script or HTML via the s parameter.
Emlog Emlog
9.8
CVSSv3
CVE-2021-40883
A Remote Code Execution (RCE) vulnerability exists in emlog 5.3.1 via content/plugins.
Emlog Emlog 5.3.1
9.8
CVSSv3
CVE-2022-23379
Emlog v6.0 exists to contain a SQL injection vulnerability via the $TagID parameter of getblogidsfromtagid().
Emlog Emlog 6.0.0
6.1
CVSSv3
CVE-2023-41618
Emlog Pro v2.1.14 exists to contain a reflective cross-site scripting (XSS) vulnerability via the component /admin/article.php?active_savedraft.
Emlog Emlog 2.1.14
6.1
CVSSv3
CVE-2023-41619
Emlog Pro v2.1.14 exists to contain a cross-site scripting (XSS) vulnerability via the component /admin/article.php?action=write.
Emlog Emlog 2.1.14
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
path traversal
CVE-2024-26978
CVE-2024-26982
wireless
CVE-2023-6949
CVE-2024-26980
CVE-2024-32766
CVE-2024-26939
cache poisoning
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »