CVE-2020-18268
18Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 2.7%
exploitation probability
2.7%top 15% of all CVEs
observed exploitation
nono source reports it
Open Redirect in Z-BlogPHP v1.5.2 and earlier allows remote attackers to obtain sensitive information via the "redirect" parameter in the component "zb_system/cmd.php."
Affected products
n/a · n/a