Vulnerabilities (CVE)

Filtered by vendor Blogengine Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-28921 1 Blogengine 1 Blogengine.net 2022-05-26 4.3 MEDIUM 6.5 MEDIUM
A Cross-Site Request Forgery (CSRF) vulnerability discovered in BlogEngine.Net v3.3.8.0 allows unauthenticated attackers to read arbitrary files on the hosting web server.