Skip to main content

Vendor archive

bloo CVEs

Beta · best-effort

3 CVEs tagged to vendor bloo0 Critical, 2 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2008-0427

Published Jan 23, 2008

Directory traversal vulnerability in file.php in bloofoxCMS 0.3 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.

CVSS 7.8 · High
Vendor/product tagsBeta · best-effort

CVE-2006-6019

Published Nov 21, 2006

Cross-site scripting (XSS) vulnerability in extensions/googiespell/googlespell_proxy.php in Bill Roberts Bloo 1.0 allows remote attackers to inject arbitrary web script or HTML vi…

CVSS 6.8 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-6023

Published Nov 21, 2006

PHP remote file inclusion vulnerability in phoo.base.php in Bill Roberts Bloo 1.0 allows remote attackers to execute arbitrary PHP code via a URL in the descriptorFileList paramet…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort
Showing 1-3 of 3 CVEsPage 1 of 1