VYPR

Blogplus

by Blogplus

CVEs (1)

  • CVE-2009-1246Apr 6, 2009
    risk 0.03cvss epss 0.03

    Multiple directory traversal vulnerabilities in Blogplus 1.0 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the (1) row_mysql_blocks_center_down[file] parameter to includes/block_center_down.php; (2) row_mysql_blocks_center_top[file]…