Phpblogger maintains a focused blogging platform product with a modest vulnerability footprint reflecting its narrow scope as a web-based publishing application. The observed disclosures in this product center on general application-layer concerns rather than a specific recurring weakness class; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Phpblogger over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2007-4157MEDIUM PHPBlogger stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing an admin password hash | Aug 3, 2007 | 5.0 | 15 | NO | NO |
CVE-2006-3514MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in admin/actions.php in PHP-Blogger 2.2.5, and possibly earlier versions, allow remote attackers to execute arbitrary web script | Jul 11, 2006 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Phpblogger.
Media articles that mention a CVE ID that affects a product developed by Phpblogger — matched by CVE ID, not by vendor name.