Vendor
Moxi624
Products
1
CVEs
3
Across products
3
Status
Private
Products
1- 3 CVEs
Recent CVEs
3| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-27047 | Cri | 0.64 | 9.8 | 0.01 | Apr 8, 2022 | mogu_blog_cms 5.2 suffers from upload arbitrary files without any limitation. | ||
| CVE-2026-6625 | Hig | 0.47 | 7.3 | 0.00 | Apr 20, 2026 | A security vulnerability has been detected in moxi624 Mogu Blog v2 up to 5.2. Affected by this vulnerability is the function LocalFileServiceImpl.uploadPictureByUrl of the file mogu_picture/src/main/java/com/moxi/mogublog/picture/service/impl/LocalFileServiceImpl.java of the… | ||
| CVE-2023-2101 | Med | 0.28 | 4.3 | 0.01 | Apr 15, 2023 | A vulnerability, which was classified as problematic, has been found in moxi624 Mogu Blog v2 up to 5.2. This issue affects the function uploadPictureByUrl of the file /mogu-picture/file/uploadPicsByUrl. The manipulation of the argument urlList leads to absolute path traversal.… |
- risk 0.64cvss 9.8epss 0.01
mogu_blog_cms 5.2 suffers from upload arbitrary files without any limitation.
- risk 0.47cvss 7.3epss 0.00
A security vulnerability has been detected in moxi624 Mogu Blog v2 up to 5.2. Affected by this vulnerability is the function LocalFileServiceImpl.uploadPictureByUrl of the file mogu_picture/src/main/java/com/moxi/mogublog/picture/service/impl/LocalFileServiceImpl.java of the…
- risk 0.28cvss 4.3epss 0.01
A vulnerability, which was classified as problematic, has been found in moxi624 Mogu Blog v2 up to 5.2. This issue affects the function uploadPictureByUrl of the file /mogu-picture/file/uploadPicsByUrl. The manipulation of the argument urlList leads to absolute path traversal.…