VendorsZblogcnz-blogphp1.5.1.1740
Vulnerabilities

Zblogcn Z-BlogPHP 1.5.1.1740

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

2CVEs
CVE-2018-7736
In Z-BlogPHP 1.5.1.1740, cmd.php has XSS via the ZC_BLOG_SUBNAME parameter or ZC_UPLOAD_FILETYPE parameter. NOTE: the software maintainer disputes that this is a vulnerability
Published 2018-03-06 · Modified
6.11 PoCEPSS 0.033
CVE-2018-7737
In Z-BlogPHP 1.5.1.1740, there is Web Site physical path leakage, as demonstrated by admin_footer.php or admin_footer.php. NOTE: the software maintainer disputes that this is a vulnerability
Published 2018-03-06 · Modified
5.31 PoCEPSS 0.085