Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
By Recent Activity
log injection vulnerabilities and exploits
(subscribe to this query)
6.5
CVSSv2
CVE-2015-4613
SQL injection vulnerability in the backend module in the Developer Log (devlog) extension before 2.11.4 for TYPO3 allows remote editors to execute arbitrary SQL commands via unspecified vectors....
Developer Log Project Developer Log
NA
CVE-2022-27858
CSV Injection vulnerability in Activity Log Team Activity Log <= 2.8.3 on WordPress....
Activity Log Project Activity Log
2 Github repositories available
NA
CVE-2022-1277
Inavitas Solar Log product has an unauthenticated SQL Injection vulnerability....
Inavitas Solar Log
NA
CVE-2022-31890
SQL Injection vulnerability in audit/class.audit.php in osTicket osTicket-plugins before commit a7842d494889fd5533d13deb3c6a7789768795ae via the order parameter to the getOrder function....
Enhancesoft Audit Log
1 Github repository available
7.5
CVSSv2
CVE-2018-6024
SQL Injection exists in the Project Log 1.5.3 component for Joomla! via the search parameter....
Thethinkery Project Log 1.5.3
1 EDB exploit available
7.5
CVSSv2
CVE-2017-18573
The simple-login-log plugin before 1.1.2 for WordPress has SQL injection....
Simplerealtytheme Simple Login Log
4.9
CVSSv2
CVE-2019-4216
IBM SmartCloud Analytics 1.3.1 through 1.3.5 is vulnerable to possible host header injection attack that could lead to HTTP cache poisoning or firewall bypass. IBM X-Force ID: 159187....
Ibm Smartcloud Analytics Log Analysis
7.5
CVSSv2
CVE-2015-9344
The link-log plugin before 2.1 for WordPress has SQL injection....
Perafox Link Log
2.1
CVSSv2
CVE-2018-16252
FsPro Labs Event Log Explorer 4.6.1.2115 has ".elx" FileType XML External Entity Injection....
Fspro Event Log Explorer 4.6.1.2115
1 EDB exploit available
5
CVSSv2
CVE-2022-32549
Apache Sling Commons Log <= 5.4.0 and Apache Sling API <= 2.25.0 are vulnerable to log injection. The ability to forge logs may allow an attacker to cover tracks by injecting fake logs and potentially corrupt log files....
Apache Sling Commons Log
Apache Sling Api
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2023-30758
CSRF
CVE-2021-44228
CVE-2023-33633
XPath injection
CVE-2023-33735
CVE-2023-29336
CVE-2023-34312
cache poisoning
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
3
4
5
NEXT »