Medium severity5.4NVD Advisory· Published Oct 16, 2018· Updated Jun 17, 2026
CVE-2018-18381
CVE-2018-18381
Description
Z-BlogPHP 1.5.2.1935 (Zero) has a stored XSS Vulnerability in zb_system/function/c_system_admin.php via the Content-Type header during the uploading of image attachments.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
1- github.com/seedis/Z-BlogPHP/blob/master/Z-BlogPHP_stored_xss.mdnvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.