📦 Blogengine.net

by Blogengine

🔍 What is Blogengine.net?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-33404

CRITICAL CVSS 9.8 Jun 26, 2023

CVE-2023-33404 is an unrestricted file upload vulnerability in BlogEngine.NET that allows remote attackers to upload malicious files without proper validation. This enables remote code execution on af...

CVE-2022-25591

CRITICAL CVSS 9.1 May 13, 2022

CVE-2022-25591 is an arbitrary file deletion vulnerability in BlogEngine.NET that allows attackers to delete files within the web server root directory via crafted HTTP requests. This affects BlogEngi...

CVE-2023-22856

HIGH CVSS 8.5 Mar 6, 2023

A stored Cross-site Scripting (XSS) vulnerability in BlogEngine.NET allows attackers to upload specially crafted files that inject malicious JavaScript into blog pages. This JavaScript executes in the...