Vulnerabilities
Vulnerable Software
A stored cross-site scripting (XSS) vulnerability in Typecho v1.3.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
CVSS Score
9.0
EPSS Score
0.006
Published
2024-08-20
A stored cross-site scripting (XSS) vulnerability in Typecho v1.2.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the url parameter at /index.php/archives/1/comment.
CVSS Score
5.4
EPSS Score
0.001
Published
2023-05-04
Cross Site Scripting vulnerability found in Typecho v.1.2.0 allows a remote attacker to execute arbitrary code via an arbitrarily supplied URL parameter.
CVSS Score
4.8
EPSS Score
0.002
Published
2023-03-16
Cross Site Scripting vulnerability found in Typecho v.1.2.0 allows a remote attacker to execute arbitrary code viathe Post Editorparameter.
CVSS Score
4.8
EPSS Score
0.002
Published
2023-03-16
Cross Site Scripting vulnerability found in Typecho v.1.2.0 allows a remote attacker to execute arbitrary code via the Comment Manager /admin/manage-comments.php component.
CVSS Score
4.8
EPSS Score
0.002
Published
2023-03-16
typecho 1.1/17.10.30 was discovered to contain a remote code execution (RCE) vulnerability via install.php.
CVSS Score
9.8
EPSS Score
0.014
Published
2023-02-22


Contact Us

Shodan ® - All rights reserved