Skip to main content

Vendor/product archive

sblog / sblog CVEs

Beta · best-effort

5 CVEs tagged to sblog / sblog0 Critical, 2 High, 3 Medium, 0 Low, 0 Unrated.

CVE-2007-5818

Published Nov 5, 2007

Cross-site request forgery (CSRF) vulnerability in blocks_edit_do.php in sBlog 0.7.3 Beta allows remote attackers to change arbitrary blocks as administrators.

CVSS 7.6 · High
Vendor/product tagsBeta · best-effort

CVE-2007-4102

Published Jul 31, 2007

Cross-site scripting (XSS) vulnerability in search.php for sBlog 0.7.3 Beta allows remote attackers to inject arbitrary HTML and web script via a leading '"/></> sequence in the s…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2007-1801

Published Apr 2, 2007

Directory traversal vulnerability in inc/lang.php in sBLOG 0.7.3 Beta allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the conf_lang_defa…

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2006-1135

Published Mar 10, 2006

Multiple cross-site scripting (XSS) vulnerabilities in sBlog 0.7.2 allow remote attackers to inject arbitrary web script or HTML via the (1) keyword parameter to search.php or (2)…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort

CVE-2006-0101

Published Jan 6, 2006

Multiple cross-site scripting (XSS) vulnerabilities in sBLOG 0.7.1 Beta 20051202 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) p and (2) ke…

CVSS 4.3 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-5 of 5 CVEsPage 1 of 1