Vulnerability index

Browse CVEs

85 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Emlog MEDIUM 6.3
CVE-2025-29405

An arbitrary file upload vulnerability in the component /admin/template.php of emlog pro 2.5.0 and pro 2.5.* allows attackers to execute arbitrary co…

Fix: after 2.5.7
Fix from $1,600 2025-03-19
Emlog CRITICAL 9.8
CVE-2025-29401

An arbitrary file upload vulnerability in the component /views/plugin.php of emlog pro v2.5.7 allows attackers to execute arbitrary code via uploadin…

No fix yet
Fix from $2,300 2025-03-19
Emlog HIGH 7.3
CVE-2025-25823

A cross-site scripting (XSS) vulnerability in Emlog Pro v2.5.4 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payl…

Mitigation only
Fix from $1,950 2025-02-26
Emlog HIGH 7.1
CVE-2025-25825

A cross-site scripting (XSS) vulnerability in Emlog Pro v2.5.4 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payl…

Mitigation only
Fix from $1,950 2025-02-26
Emlog MEDIUM 6.8
CVE-2025-25827

A Server-Side Request Forgery (SSRF) in the component sort.php of Emlog Pro v2.5.4 allows attackers to scan local and internal ports via supplying a …

Mitigation only
Fix from $1,600 2025-02-26
Emlog MEDIUM 5.1
CVE-2025-25818

A cross-site scripting (XSS) vulnerability in Emlog Pro v2.5.4 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payl…

Mitigation only
Fix from $1,600 2025-02-26
Emlog CRITICAL 9.8
CVE-2025-25783

An arbitrary file upload vulnerability in the component admin\plugin.php of Emlog Pro v2.5.3 allows attackers to execute arbitrary code via uploading…

Mitigation only
Fix from $2,300 2025-02-26
Emlog MEDIUM 5.4
CVE-2024-13140

A vulnerability classified as problematic has been found in Emlog Pro up to 2.4.3. Affected is an unknown function of the file /admin/article.php?act…

Fix: after 2.4.3
Fix from $1,600 2025-01-05
Emlog MEDIUM 5.4
CVE-2024-13135

A vulnerability has been found in Emlog Pro 2.4.3 and classified as problematic. Affected by this vulnerability is an unknown functionality of the fi…

No fix yet
Fix from $1,600 2025-01-05
Emlog MEDIUM 5.4
CVE-2024-13132

A vulnerability classified as problematic was found in Emlog Pro up to 2.4.3. This vulnerability affects unknown code of the file /admin/article.php …

Fix: after 2.4.3
Fix from $1,600 2025-01-05
Emlog MEDIUM 6.1
CVE-2024-12845

A vulnerability classified as problematic was found in Emlog Pro up to 2.4.1. Affected by this vulnerability is an unknown functionality in the libra…

Fix: after 2.4.1
Fix from $1,600 2024-12-20
Emlog MEDIUM 6.1
CVE-2024-12843

A vulnerability was found in Emlog Pro up to 2.4.1. It has been rated as problematic. This issue affects some unknown processing of the file /admin/p…

Fix: after 2.4.1
Fix from $1,600 2024-12-20
Emlog MEDIUM 6.1
CVE-2024-12844

A vulnerability classified as problematic has been found in Emlog Pro up to 2.4.1. Affected is an unknown function of the file /admin/store.php. The …

Fix: after 2.4.1
Fix from $1,600 2024-12-20
Emlog MEDIUM 6.1
CVE-2024-12842

A vulnerability was found in Emlog Pro up to 2.4.1. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/u…

Fix: 2.4.1+
Fix from $1,600 2024-12-20
Emlog MEDIUM 6.1
CVE-2024-12841

A vulnerability was found in Emlog Pro up to 2.4.1. It has been classified as problematic. This affects an unknown part of the file /admin/tag.php. T…

Fix: after 2.4.1
Fix from $1,600 2024-12-20
Emlog MEDIUM 5.4
CVE-2024-50655

emlog pro <=2.3.18 is vulnerable to Cross Site Scripting (XSS), which allows attackers to write malicious JavaScript code in published articles.

Fix: after 2.3.18
Fix from $1,600 2024-11-15
Emlog MEDIUM 6.3
CVE-2024-46540

A remote code execution (RCE) vulnerability in the component /admin/store.php of Emlog Pro before v2.3.15 allows attackers to use remote file downloa…

Fix: 2.3.15+
Fix from $1,600 2024-09-30
Emlog MEDIUM 6.5
CVE-2024-31612

Emlog pro2.3 is vulnerable to Cross Site Request Forgery (CSRF) via twitter.php which can be used with a XSS vulnerability to access administrator in…

No fix yet
Fix from $1,600 2024-06-10
Emlog HIGH 8.1
CVE-2024-5044

A vulnerability was found in Emlog Pro 2.3.4. It has been classified as problematic. This affects an unknown part of the component Cookie Handler. Th…

No fix yet
Fix from $1,950 2024-05-17
Emlog HIGH 8.8
CVE-2024-5043

A vulnerability was found in Emlog Pro 2.3.4 and classified as critical. Affected by this issue is some unknown functionality of the file admin/setti…

No fix yet
Fix from $1,950 2024-05-17
Emlog MEDIUM 6.3
CVE-2024-33752

An arbitrary file upload vulnerability exists in emlog pro 2.3.0 and pro 2.3.2 at admin/views/plugin.php that could be exploited by a remote attacker…

No fix yet
Fix from $1,600 2024-05-06
Emlog MEDIUM 5.4
CVE-2024-3763

A vulnerability was found in Emlog Pro 2.2.10. It has been rated as problematic. This issue affects some unknown processing of the file /admin/tag.ph…

No fix yet
Fix from $1,600 2024-04-14
Emlog MEDIUM 5.4
CVE-2024-3762

A vulnerability was found in Emlog Pro 2.2.10. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/twitte…

No fix yet
Fix from $1,600 2024-04-14
Emlog MEDIUM 6.1
CVE-2024-31013

Cross Site Scripting (XSS) vulnerability in emlog version Pro 2.3, allow remote attackers to execute arbitrary code via a crafted payload to the bott…

No fix yet
Fix from $1,600 2024-04-03
Emlog MEDIUM 6.1
CVE-2024-25381

There is a Stored XSS Vulnerability in Emlog Pro 2.2.8 Article Publishing, due to non-filtering of quoted content.

No fix yet
Fix from $1,600 2024-02-21
Emlog MEDIUM 6.1
CVE-2023-41619

Emlog Pro v2.1.14 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /admin/article.php?action=write.

No fix yet
Fix from $1,600 2024-01-16
Emlog MEDIUM 6.1
CVE-2023-41618

Emlog Pro v2.1.14 was discovered to contain a reflective cross-site scripting (XSS) vulnerability via the component /admin/article.php?active_savedra…

No fix yet
Fix from $1,600 2023-12-14
Emlog MEDIUM 6.1
CVE-2023-41621

A Cross Site Scripting (XSS) vulnerability was discovered in Emlog Pro v2.1.14 via the component /admin/store.php.

No fix yet
Fix from $1,600 2023-12-13
Emlog HIGH 7.2
CVE-2023-41623

Emlog version pro2.1.14 was discovered to contain a SQL injection vulnerability via the uid parameter at /admin/media.php.

No fix yet
Fix from $1,950 2023-12-12
Emlog CRITICAL 9.8
CVE-2023-44973

An arbitrary file upload vulnerability in the component /content/templates/ of Emlog Pro v2.2.0 allows attackers to execute arbitrary code via upload…

No fix yet
Fix from $2,300 2023-10-03