Showing 1 vulnerability on this page for a-blog cms (Ver. 2.8.x series)

Signals CISA KEV Ransomware Nuclei
appleple inc. vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

A-blog CMS Untrusted Data Deserialization

Untrusted data deserialization vulnerability exists in a-blog cms. Processing a specially crafted request may store arbitrary files on the server where the product is running. This can be leveraged to execute an arbitrary script on the server.

CWE-502Mar 31, 2025
CVSS7.5v3.1EPSS0.474%PoCs0SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templatesSTIX