Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
emlog vulnerabilities and exploits
(subscribe to this query)
8.8
CVSSv3
CVE-2021-30081
An issue exists in emlog 6.0.0stable. There is a SQL Injection vulnerability that can execute any SQL statement and query server sensitive data via admin/navbar.php?action=add_page.
Emlog Emlog 6.0.0
6.1
CVSSv3
CVE-2020-18194
Cross Site Scripting (XSS) in emlog v6.0.0 allows remote malicious users to execute arbitrary code by adding a crafted script as a link to a new blog post.
Emlog Emlog 6.0.0
4.8
CVSSv3
CVE-2022-23872
Emlog pro v1.1.1 exists to contain a stored cross-site scripting (XSS) vulnerability in the component /admin/configure.php via the parameter footer_info.
Emlog Emlog 1.1.1
5.4
CVSSv3
CVE-2023-43267
A cross-site scripting (XSS) vulnerability in the publish article function of emlog pro v2.1.14 allows malicious users to execute arbitrary web scripts or HTML via a crafted payload injected into the title field.
Emlog Emlog 2.1.14
4.8
CVSSv3
CVE-2022-43372
Emlog Pro v1.7.1 exists to contain a reflected cross-site scripting (XSS) vulnerability at /admin/store.php.
Emlog Emlog 1.7.1
6.1
CVSSv3
CVE-2023-41618
Emlog Pro v2.1.14 exists to contain a reflective cross-site scripting (XSS) vulnerability via the component /admin/article.php?active_savedraft.
Emlog Emlog 2.1.14
6.1
CVSSv3
CVE-2023-41619
Emlog Pro v2.1.14 exists to contain a cross-site scripting (XSS) vulnerability via the component /admin/article.php?action=write.
Emlog Emlog 2.1.14
6.1
CVSSv3
CVE-2023-41621
A Cross Site Scripting (XSS) vulnerability exists in Emlog Pro v2.1.14 via the component /admin/store.php.
Emlog Emlog 2.1.14
7.2
CVSSv3
CVE-2022-42189
Emlog Pro 1.6.0 plugins upload suffers from a remote code execution (RCE) vulnerability.
Emlog Emlog 1.6.0
7.2
CVSSv3
CVE-2020-21654
emlog v6.0 contains a vulnerability in the component admin\template.php, which allows malicious users to getshell via a crafted Zip file.
Emlog Emlog 6.0.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-48693
CVE-2024-30851
CVE-2024-34460
CVE-2024-2887
local
CVE-2024-27956
remote code execution
CVE-2024-34475
privilege
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
NEXT »