VYPR
Vendor

mlogclub

Products
1
CVEs
3
Across products
3
Status
Private

Products

1

Recent CVEs

3
  • CVE-2023-36223MedJul 3, 2023
    risk 0.35cvss 5.4epss 0.01

    Cross Site Scripting vulnerability in mlogclub bbs-go v. 3.5.5. and before allows a remote attacker to execute arbitrary code via a crafted payload to the announcements parameter in the settings function.

  • CVE-2023-36222MedJul 3, 2023
    risk 0.35cvss 5.4epss 0.01

    Cross Site Scripting vulnerability in mlogclub bbs-go v. 3.5.5. and before allows a remote attacker to execute arbitrary code via a crafted payload to the comment parameter in the article function.

  • CVE-2021-38221MedJun 2, 2022
    risk 0.00cvss 5.4epss 0.01

    bbs-go <= 3.3.0 including Custom Edition is vulnerable to stored XSS.