VYPR

Blog

by Cells

CVEs (3)

  • CVE-2017-17950HigDec 28, 2017
    risk 0.57cvss 8.8epss 0.01

    Cells Blog 3.5 has SQL Injection via the pub_readpost.php ptid parameter.

  • CVE-2017-17949MedDec 28, 2017
    risk 0.40cvss 6.1epss 0.01

    Cells Blog 3.5 has XSS via the pub_readpost.php fmid parameter.

  • CVE-2017-17948MedDec 28, 2017
    risk 0.40cvss 6.1epss 0.01

    Cells Blog 3.5 has XSS via the jfdname parameter in an act=showpic request.