Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
emlog vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2019-16868
emlog up to and including 6.0.0beta has an arbitrary file deletion vulnerability via an admin/data.php?action=dell_all_bak request with directory traversal sequences in the bak[] parameter.
Emlog Emlog
Emlog Emlog 6.0.0
5.5
CVSSv2
CVE-2019-17073
emlog up to and including 6.0.0beta allows remote authenticated users to delete arbitrary files via admin/template.php?action=del&tpl=../ directory traversal.
Emlog Emlog 6.0.0
Emlog Emlog
4.3
CVSSv2
CVE-2021-44584
Cross-site scripting (XSS) vulnerability in index.php in emlog version <= pro-1.0.7 allows remote malicious users to inject arbitrary web script or HTML via the s parameter.
Emlog Emlog
NA
CVE-2023-43291
Deserialization of Untrusted Data in emlog pro v.2.1.15 and previous versions allows a remote malicious user to execute arbitrary code via the cache.php component.
Emlog Emlog
3.5
CVSSv2
CVE-2022-1526
A vulnerability, which was classified as problematic, was found in Emlog Pro up to 1.2.2. This affects the POST parameter handling of articles. The manipulation with the input <script>alert(1);</script> leads to cross site scripting. It is possible to initiate the att...
Emlog Emlog
NA
CVE-2022-3968
A vulnerability has been found in emlog and classified as problematic. Affected by this vulnerability is an unknown functionality of the file admin/article_save.php. The manipulation of the argument tag leads to cross site scripting. The attack can be launched remotely. The name ...
Emlog Emlog
NA
CVE-2020-19028
*File Upload vulnerability found in Emlog EmlogCMS v.6.0.0 allows a remote malicious user to gain access to sensitive information via the /admin/plugin.php function.
Emlog Emlog 6.0.0
NA
CVE-2023-39121
emlog v2.1.9 exists to contain a SQL injection vulnerability via the component /admin/user.php.
Emlog Emlog 2.1.9
NA
CVE-2022-42189
Emlog Pro 1.6.0 plugins upload suffers from a remote code execution (RCE) vulnerability.
Emlog Emlog 1.6.0
6.8
CVSSv2
CVE-2018-18316
emlog v6.0.0 has CSRF via the admin/user.php?action=new URI.
Emlog Emlog 6.0.0
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
injection
CVE-2024-30983
CVE-2023-4235
CVE-2024-21338
privilege
encryption
CVE-2023-4232
CVE-2024-31497
CVE-2024-32341
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
NEXT »