VendorsS9Yserendipity2.0.5
Vulnerabilities

S9Y Serendipity 2.0.5

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2017-5609
SQL injection vulnerability in include/functions_entries.inc.php in Serendipity 2.0.5 allows remote authenticated users to execute arbitrary SQL commands via the cat parameter.
Published 2017-01-28 · Modified
8.8EPSS 0.016
CVE-2017-8101
There is CSRF in Serendipity 2.0.5, allowing attackers to install any themes via a GET request.
Published 2017-04-24 · Modified
8.8EPSS 0.006