VYPR

Zomplog

by Zomp

CVEs (2)

  • CVE-2008-2349May 20, 2008
    risk 0.03cvss epss 0.06

    Zomplog 3.8.2 and earlier allows remote attackers to gain administrative access by creating an admin account via a direct request to install/newuser.php with the admin parameter set to 1.

  • CVE-2008-2176May 13, 2008
    risk 0.00cvss epss 0.00

    Cross-site scripting (XSS) vulnerability in admin/category.php in Zomplog 3.8.2 allows remote attackers to inject arbitrary web script or HTML via the catname parameter.