ZeroHour

Vulnerabilities

3 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos

CVEVulnerabilityCVSSEPSSFlagsAffectedExposurePublished
CVE-2021-46085
OneBlog <= 2.2.8 is vulnerable to Insecure Permissions.

OneBlog <= 2.2.8 is vulnerable to Insecure Permissions. Low level administrators can delete high-level administrators beyond their authority.

NVD description · AI analysis pending
6.5<1% PoC
  • oneblog project oneblog
CVE-2021-46025
A Cross SIte Scripting (XSS) vulnerability exists in OneBlog <= 2.2.8.

A Cross SIte Scripting (XSS) vulnerability exists in OneBlog <= 2.2.8. via the add function in the operation tab list in the background.

NVD description · AI analysis pending
5.4<1% PoC
  • oneblog project oneblog
CVE-2018-19165
neblio through 1.5.1 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of service, exploitable by an attacker who acquires even a small amoun

neblio through 1.5.1 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of service, exploitable by an attacker who acquires even a small amount of stake/coins in the system. The attacker sends invalid headers/blocks, which are stored on the victim's disk.

NVD description · AI analysis pending
7.51%
  • nebl neblio