Skip to content
Noroxi

blogphp records

5 published records for vendor blogphp.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
1
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

5 records
  • CVE-2008-6745
    32Monitor

    index.php in BlogPHP 2.0 allows remote attackers to gain administrator privileges via a crafted email parameter in a register2 action.

    HighCVSS 7.5Proof of conceptEPSS 6%

    blogphp · blogphpApr 23, 2009

  • CVE-2008-0678
    27Monitor

    SQL injection vulnerability in index.php in BlogPHP 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter in a

    MediumCVSS 6.8Proof of conceptEPSS 1%

    blogphp · blogphpFeb 11, 2008

  • CVE-2008-2524
    20Monitor

    BlogPHP 2.0 allows remote attackers to bypass authentication, and post (1) messages or (2) comments as an arbitrary user, via a modified blo

    MediumCVSS 5.0No exploitEPSS 1%

    blogphp · blogphpJun 3, 2008

  • CVE-2008-6631
    18Monitor

    Multiple cross-site scripting (XSS) vulnerabilities in index.php in BlogPHP 2.0 allow remote attackers to inject arbitrary web script or HTM

    MediumCVSS 4.3Proof of conceptEPSS 2%

    blogphp · blogphpApr 7, 2009

  • CVE-2008-0679
    17Monitor

    Cross-site scripting (XSS) vulnerability in index.php in BlogPHP 2.0 allows remote attackers to inject arbitrary web script or HTML via the

    MediumCVSS 4.3Proof of conceptEPSS 2%

    blogphp · blogphpFeb 11, 2008