Blog Project
Blog Project Blog: vulnerabilidades y CVE
Blog Project Blog tiene 3 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE3
Últimos 12 meses0
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2022-23626 | Alta (8.8) | 9.9% | — | 8 feb 2022 | m1k1o/blog is a lightweight self-hosted facebook-styled PHP blog. Errors from functions `imagecreatefrom*` and `image*` have not been checked properly. Although PHP issued warnings and the upload function returned… |
| CVE-2017-14346 | Crítica (9.8) | 2.1% | — | 12 sept 2017 | upload.php in tianchoy/blog through 2017-09-12 allows unrestricted file upload and PHP code execution by using the image/jpeg, image/pjpeg, image/png, or image/gif content type for a .php file. |
| CVE-2017-14345 | Crítica (9.8) | 1.1% | — | 12 sept 2017 | SQL Injection exists in tianchoy/blog through 2017-09-12 via the id parameter to view.php. |