Vendorsmagicbugcloudlog2.6.15
Vulnerabilities

magicbug Cloudlog 2.6.15

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2024-48253
Cloudlog 2.6.15 allows Oqrs.php delete_oqrs_line id SQL injection.
Published 2024-10-14 · Analyzed
9.8EPSS 0.004
CVE-2024-48255
Cloudlog 2.6.15 allows Oqrs.php get_station_info station_id SQL injection.
Published 2024-10-14 · Analyzed
9.8EPSS 0.004
CVE-2024-44065
Time-based blind SQL Injection vulnerability in Cloudlog v2.6.15 at the endpoint /index.php/logbookadvanced/search in the qsoresults parameter.
Published 2025-12-26 · Analyzed
9.8EPSS 0.004
CVE-2024-48259
Cloudlog 2.6.15 allows Oqrs.php request_form SQL injection via station_id or callsign.
Published 2024-10-14 · Analyzed
7.3EPSS 0.009