Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
emlog vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2019-16868
emlog up to and including 6.0.0beta has an arbitrary file deletion vulnerability via an admin/data.php?action=dell_all_bak request with directory traversal sequences in the bak[] parameter.
Emlog Emlog
Emlog Emlog 6.0.0
6.5
CVSSv3
CVE-2019-17073
emlog up to and including 6.0.0beta allows remote authenticated users to delete arbitrary files via admin/template.php?action=del&tpl=../ directory traversal.
Emlog Emlog 6.0.0
Emlog Emlog
9.8
CVSSv3
CVE-2023-43291
Deserialization of Untrusted Data in emlog pro v.2.1.15 and previous versions allows a remote malicious user to execute arbitrary code via the cache.php component.
Emlog Emlog
5.4
CVSSv3
CVE-2022-1526
A vulnerability, which was classified as problematic, was found in Emlog Pro up to 1.2.2. This affects the POST parameter handling of articles. The manipulation with the input <script>alert(1);</script> leads to cross site scripting. It is possible to initiate the att...
Emlog Emlog
6.1
CVSSv3
CVE-2021-44584
Cross-site scripting (XSS) vulnerability in index.php in emlog version <= pro-1.0.7 allows remote malicious users to inject arbitrary web script or HTML via the s parameter.
Emlog Emlog
6.1
CVSSv3
CVE-2022-3968
A vulnerability has been found in emlog and classified as problematic. Affected by this vulnerability is an unknown functionality of the file admin/article_save.php. The manipulation of the argument tag leads to cross site scripting. The attack can be launched remotely. The name ...
Emlog Emlog
5.4
CVSSv3
CVE-2023-30338
Multiple stored cross-site scripting (XSS) vulnerabilities in Emlog Pro v2.0.3 allows malicious users to execute arbitrary web scripts or HTML via a crafted payload injected into the Article Title or Article Summary parameters.
Emlog Emlog 2.0.3
6.1
CVSSv3
CVE-2023-41618
Emlog Pro v2.1.14 exists to contain a reflective cross-site scripting (XSS) vulnerability via the component /admin/article.php?active_savedraft.
Emlog Emlog 2.1.14
6.1
CVSSv3
CVE-2023-41619
Emlog Pro v2.1.14 exists to contain a cross-site scripting (XSS) vulnerability via the component /admin/article.php?action=write.
Emlog Emlog 2.1.14
6.1
CVSSv3
CVE-2023-41621
A Cross Site Scripting (XSS) vulnerability exists in Emlog Pro v2.1.14 via the component /admin/store.php.
Emlog Emlog 2.1.14
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4671
unauthorized
CVE-2024-4776
CVE-2024-3407
CVE-2024-26026
CVE-2024-32888
wireless
CVE-2024-4656
template injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »