Known Vulnerabilities for Bloofoxcms by Bloofox
Listed below are 10 of the newest known vulnerabilities associated with "Bloofoxcms" by "Bloofox".
These CVEs are retrieved based on exact matches on listed software, hardware, and vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed software information are still displayed.
Data on known vulnerable versions is also displayed based on information from known CPEs
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-34756 json | bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the cid parameter at admin/index.php?mode=settin... | 9.8 - CRITICAL | 2023-06-14 | 2023-06-17 |
| CVE-2023-34755 json | bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the userid parameter at admin/index.php?mode=use... | 9.8 - CRITICAL | 2023-06-14 | 2023-06-17 |
| CVE-2023-34754 json | bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the pid parameter at admin/index.php?mode=settin... | 9.8 - CRITICAL | 2023-06-14 | 2023-06-17 |
| CVE-2023-34753 json | bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the tid parameter at admin/index.php?mode=settin... | 9.8 - CRITICAL | 2023-06-14 | 2023-06-17 |
| CVE-2023-34752 json | bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the lid parameter at admin/index.php?mode=settin... | 9.8 - CRITICAL | 2023-06-14 | 2023-06-17 |
| CVE-2023-34751 json | bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the gid parameter at admin/index.php?mode=user&p... | 9.8 - CRITICAL | 2023-06-14 | 2023-06-17 |
| CVE-2023-34750 json | bloofox v0.5.2.1 was discovered to contain a SQL injection vulnerability via the cid parameter at admin/index.php?mode=settin... | 9.8 - CRITICAL | 2023-06-14 | 2023-06-17 |
| CVE-2023-29597 json | bloofox v0.5.2 was discovered to contain a SQL injection vulnerability via the component /index.php?mode=content&page=pages&a... | 8.8 - HIGH | 2023-04-13 | 2023-12-22 |
| CVE-2023-27812 json | bloofox v0.5.2 was discovered to contain an arbitrary file deletion vulnerability via the delete_file() function. | 9.1 - CRITICAL | 2023-04-13 | 2023-12-22 |
| CVE-2023-23151 json | bloofoxCMS v0.5.2.1 was discovered to contain an arbitrary file deletion vulnerability via the component /include/inc_content... | 6.5 - MEDIUM | 2023-01-26 | 2023-02-02 |