Lucene search

K

Pligg Security Vulnerabilities

cve
cve

CVE-2008-3573

The CAPTCHA implementation in (1) Pligg 9.9.5 and possibly (2) Francisco Burzi PHP-Nuke 8.1 provides a critical random number (the ts_random value) within the URL in the SRC attribute of an IMG element, which allows remote attackers to pass the CAPTCHA test via a calculation that combines this valu...

6.7AI Score

0.013EPSS

2008-08-10 08:41 PM
19
cve
cve

CVE-2020-25287

Pligg 2.0.3 allows remote authenticated users to execute arbitrary commands because the template editor can edit any file, as demonstrated by an admin/admin_editor.php the_file=..%2Findex.php&open=Open request.

7.2CVSS

7.2AI Score

0.002EPSS

2020-09-13 06:15 PM
21