Diego Najar
3 exploits
Active since Jun 2019
Bludit CMS has improper authorization and mediation failure leading to persistent ghost sessions
CVSS 8.8
Bludit < 3.9.0 - Authenticated Remote Code Execution via Logo Upload
CVSS 8.8
Bludit < 3.9.1 - Unauthenticated Password Change via Insecure Direct Object Reference
CVSS 8.8