Mtons
Mtons Mblog: vulnerabilidades y CVE
Mtons Mblog tiene 14 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 1 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE14
Últimos 12 meses0
Críticas1
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2025-9647 | Baja (2.1) | 0.36% | — | 29 ago 2025 | A weakness has been identified in mtons mblog up to 3.5.0. This issue affects some unknown processing of the file /admin/role/list. This manipulation of the argument Name causes cross site scripting. The attack may be… |
| CVE-2025-9433 | Baja (2.1) | 0.41% | — | 26 ago 2025 | A vulnerability was found in mtons mblog up to 3.5.0. The impacted element is an unknown function of the file /admin/user/list of the component Admin Panel. Performing manipulation of the argument Name results in cross… |
| CVE-2025-9432 | Baja (2.1) | 0.36% | — | 26 ago 2025 | A vulnerability has been found in mtons mblog up to 3.5.0. The affected element is an unknown function of the file /admin/post/list of the component Admin Panel. Such manipulation of the argument Title leads to cross… |
| CVE-2025-9431 | Baja (2.1) | 0.36% | — | 26 ago 2025 | A flaw has been found in mtons mblog up to 3.5.0. Impacted is an unknown function of the file /search. This manipulation of the argument kw causes cross site scripting. The attack can be initiated remotely. The exploit… |
| CVE-2025-9430 | Baja (1.9) | 0.27% | — | 26 ago 2025 | A vulnerability was detected in mtons mblog up to 3.5.0. This issue affects some unknown processing of the file /admin/options/update. The manipulation of the argument input results in cross site scripting. It is… |
| CVE-2025-9429 | Baja (2) | 0.26% | — | 26 ago 2025 | A security vulnerability has been detected in mtons mblog up to 3.5.0. This vulnerability affects unknown code of the file /post/submit of the component Post Handler. The manipulation of the argument content/title/… |
| CVE-2025-9407 | Baja (2) | 0.25% | — | 25 ago 2025 | A flaw has been found in mtons mblog up to 3.5.0. Affected by this vulnerability is an unknown functionality of the file /settings/profile. Executing manipulation of the argument signature can lead to cross site… |
| CVE-2025-9005 | Baja (2.9) | 0.59% | — | 15 ago 2025 | A vulnerability was determined in mtons mblog up to 3.5.0. Affected is an unknown function of the file /register. The manipulation leads to information exposure through error message. It is possible to launch the attack… |
| CVE-2025-9004 | Baja (2.9) | 0.87% | — | 15 ago 2025 | A vulnerability was found in mtons mblog up to 3.5.0. This issue affects some unknown processing of the file /settings/password. The manipulation leads to improper restriction of excessive authentication attempts. The… |
| CVE-2025-8992 | Baja (2.1) | 0.27% | — | 15 ago 2025 | A vulnerability has been found in mtons mblog up to 3.5.0. Affected by this issue is some unknown functionality. The manipulation leads to cross-site request forgery. The attack may be launched remotely. The exploit has… |
| CVE-2025-8927 | Baja (2.9) | 0.62% | — | 13 ago 2025 | A vulnerability was determined in mtons mblog up to 3.5.0. Affected by this issue is some unknown functionality of the file /email/send_code of the component Verification Code Handler. The manipulation of the argument… |
| CVE-2024-13199 | Media (5.3) | 0.46% | — | 9 ene 2025 | A vulnerability classified as problematic was found in langhsu Mblog Blog System 3.5.0. Affected by this vulnerability is an unknown functionality of the file /search of the component Search Bar. The manipulation of the… |
| CVE-2024-13198 | Media (6.3) | 0.68% | — | 9 ene 2025 | A vulnerability classified as problematic has been found in langhsu Mblog Blog System 3.5.0. Affected is an unknown function of the file /login. The manipulation leads to observable response discrepancy. It is possible… |
| CVE-2024-28713 | Crítica (9.8) | 1.3% | — | 28 mar 2024 | An issue in Mblog Blog system v.3.5.0 allows an attacker to execute arbitrary code via a crafted file to the theme management feature. |