Zomp

Zomplog

2 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 3.26%
  • Published 20.05.2008 17:20:00
  • Last modified 09.04.2025 00:30:58

Zomplog 3.8.2 and earlier allows remote attackers to gain administrative access by creating an admin account via a direct request to install/newuser.php with the admin parameter set to 1.

  • EPSS 0.33%
  • Published 13.05.2008 22:20:00
  • Last modified 09.04.2025 00:30:58

Cross-site scripting (XSS) vulnerability in admin/category.php in Zomplog 3.8.2 allows remote attackers to inject arbitrary web script or HTML via the catname parameter.