VYPR

BloodX

by Diveshlunker

CVEs (2)

  • CVE-2020-29282CriDec 2, 2020
    risk 0.64cvss 9.8epss 0.03

    SQL injection vulnerability in BloodX 1.0 allows attackers to bypass authentication.

  • CVE-2020-37156MedFeb 11, 2026
    risk 0.42cvss 6.5epss 0.00

    BloodX 1.0 contains an authentication bypass vulnerability in login.php that allows attackers to access the dashboard without valid credentials. Attackers can exploit the vulnerability by sending a crafted payload with '=''or' parameters to bypass login authentication and gain…