Vulnerabilities
Vulnerable Software
Emlog:  >> Emlog  Security Vulnerabilities
Cross Site Scripting (XSS) vulnerability in emlog version Pro 2.3, allow remote attackers to execute arbitrary code via a crafted payload to the bottom of the homepage in footer_info parameter.
CVSS Score
6.1
EPSS Score
0.004
Published
2024-04-03
There is a Stored XSS Vulnerability in Emlog Pro 2.2.8 Article Publishing, due to non-filtering of quoted content.
CVSS Score
6.1
EPSS Score
0.001
Published
2024-02-21
Emlog Pro v2.1.14 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /admin/article.php?action=write.
CVSS Score
6.1
EPSS Score
0.002
Published
2024-01-16
Emlog Pro v2.1.14 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the component /admin/article.php?active_savedraft.
CVSS Score
6.1
EPSS Score
0.002
Published
2023-12-14
A Cross Site Scripting (XSS) vulnerability was discovered in Emlog Pro v2.1.14 via the component /admin/store.php.
CVSS Score
6.1
EPSS Score
0.053
Published
2023-12-13
Emlog version pro2.1.14 was discovered to contain a SQL injection vulnerability via the uid parameter at /admin/media.php.
CVSS Score
7.2
EPSS Score
0.006
Published
2023-12-12
An arbitrary file upload vulnerability in the component /content/templates/ of Emlog Pro v2.2.0 allows attackers to execute arbitrary code via uploading a crafted PHP file.
CVSS Score
9.8
EPSS Score
0.004
Published
2023-10-03
An arbitrary file upload vulnerability in the component /admin/plugin.php of Emlog Pro v2.2.0 allows attackers to execute arbitrary code via uploading a crafted PHP file.
CVSS Score
9.8
EPSS Score
0.177
Published
2023-10-03
A cross-site scripting (XSS) vulnerability in the publish article function of emlog pro v2.1.14 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the title field.
CVSS Score
5.4
EPSS Score
0.002
Published
2023-10-02
Deserialization of Untrusted Data in emlog pro v.2.1.15 and earlier allows a remote attacker to execute arbitrary code via the cache.php component.
CVSS Score
9.8
EPSS Score
0.131
Published
2023-09-27


Contact Us

Shodan ® - All rights reserved