« Volver al listado

Blog Project

Blog Project Blog: vulnerabilidades y CVE

Blog Project Blog tiene 3 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE3
Últimos 12 meses0
Críticas2
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2022-23626Alta (8.8)9.9%—8 feb 2022
m1k1o/blog is a lightweight self-hosted facebook-styled PHP blog. Errors from functions `imagecreatefrom*` and `image*` have not been checked properly. Although PHP issued warnings and the upload function returned…
CVE-2017-14346Crítica (9.8)2.1%—12 sept 2017
upload.php in tianchoy/blog through 2017-09-12 allows unrestricted file upload and PHP code execution by using the image/jpeg, image/pjpeg, image/png, or image/gif content type for a .php file.
CVE-2017-14345Crítica (9.8)1.1%—12 sept 2017
SQL Injection exists in tianchoy/blog through 2017-09-12 via the id parameter to view.php.