VYPR

Blog Mod

by Blog Mod

CVEs (2)

  • CVE-2025-13816MedDec 1, 2025
    risk 0.41cvss 6.3epss 0.01

    A security vulnerability has been detected in moxi159753 Mogu Blog v2 up to 5.2. The impacted element is the function FileOperation.unzip of the file /networkDisk/unzipFile of the component ZIP File Handler. Such manipulation of the argument fileUrl leads to path traversal. The…

  • CVE-2006-2127May 1, 2006
    risk 0.03cvss —epss 0.02

    SQL injection vulnerability in weblog_posting.php in Blog Mod 0.2.x allows remote attackers to execute arbitrary SQL commands via the r parameter.