Known Vulnerabilities for products from Zomplog
Listed below are 8 of the newest known vulnerabilities associated with the vendor "Zomplog".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2023-53888 json | Not Provided | 2025-12-15 | 2026-05-25 | |
| CVE-2007-5278 json | Zomplog 3.8.1 and earlier stores potentially sensitive information under the web root with insufficient access control, which... | Not Provided | 2007-10-08 | 2026-04-23 |
| CVE-2007-5231 json | Unrestricted file upload vulnerability in admin/upload_files.php in Zomplog 3.8.1 and earlier allows remote authenticated adm... | Not Provided | 2007-10-05 | 2026-04-23 |
| CVE-2007-5230 json | admin/upload_files.php in Zomplog 3.8.1 and earlier does not check for administrative credentials, which allows remote attack... | Not Provided | 2007-10-05 | 2026-04-23 |
| CVE-2007-2773 json | SQL injection vulnerability in plugins/mp3playlist/mp3playlist.php in Zomplog 3.8 and earlier allows remote attackers to exec... | Not Provided | 2007-05-21 | 2026-04-23 |
| CVE-2007-2157 json | Directory traversal vulnerability in upload/force_download.php in Zomplog 3.8 allows remote attackers to read arbitrary files... | Not Provided | 2007-04-19 | 2026-04-23 |
| CVE-2007-1524 json | Directory traversal vulnerability in themes/default/ in ZomPlog 3.7.6 and earlier allows remote attackers to include arbitrar... | Not Provided | 2007-03-20 | 2026-04-23 |
| CVE-2005-3309 json | Multiple SQL injection vulnerabilities in Zomplog 3.4 allow remote attackers to execute arbitrary SQL commands via (1) the id... | Not Provided | 2005-10-26 | 2025-04-03 |
| CVE-2005-3308 json | Multiple cross-site scripting (XSS) vulnerabilities in Zomplog 3.4 allow remote attackers to inject arbitrary web script or H... | Not Provided | 2005-10-26 | 2025-04-03 |