Dootzky
Dootzky Oblog: vulnerabilidades y CVE
Dootzky Oblog tiene 5 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE5
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2009-4909 | Media (6.8) | 1.7% | — | 25 jun 2010 | admin/index.php in oBlog allows remote attackers to conduct brute-force password guessing attacks via HTTP requests. |
| CVE-2009-4908 | Media (4.3) | 1.6% | — | 25 jun 2010 | Multiple cross-site scripting (XSS) vulnerabilities in oBlog allow remote attackers to inject arbitrary web script or HTML via the (1) commentName, (2) commentEmail, (3) commentWeb, or (4) commentText parameter to… |
| CVE-2009-4907 | Media (6.8) | 1.1% | — | 25 jun 2010 | Multiple cross-site request forgery (CSRF) vulnerabilities in oBlog allow remote attackers to hijack the authentication of administrators for requests that (1) change the admin password, (2) force an admin logout, (3)… |
| CVE-2009-4904 | Media (5) | 1.2% | — | 25 jun 2010 | article.php in oBlog does not properly restrict comments, which allows remote attackers to cause a denial of service (blog spam) via a comment=new action. |
| CVE-2009-4903 | Media (4.3) | 1.0% | — | 25 jun 2010 | Cross-site scripting (XSS) vulnerability in index.php in oBlog allows remote attackers to inject arbitrary web script or HTML via the search parameter. NOTE: the provenance of this information is unknown; the details… |