VYPR
Vendor

Dotnetblogengine

Products
1
CVEs
2
Across products
2
Status
Private

Products

1

Recent CVEs

2
  • CVE-2008-6476Mar 16, 2009
    risk 0.03cvss epss 0.01

    Cross-site scripting (XSS) vulnerability in blog/search.aspx in BlogEngine.NET allows remote attackers to inject arbitrary web script or HTML via the q parameter.

  • CVE-2013-6953Jan 3, 2014
    risk 0.00cvss epss 0.00

    BlogEngine.NET 2.8.0.0 and earlier allows remote attackers to read usernames and password hashes via a request for the sioc.axd file.