Aggregates CVE and security vulnerability intelligence across all cells-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.
Historical issues mainly involve vendor risk cross-site scripting and vendor risk sql injection and related problems; some flaws may lead to vendor impact session compromise, affecting vendor surface software deployment scenarios.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2017-17950 | Cells Blog 3.5 has SQL Injection via the pub_readpost.php ptid parameter. | [email protected] | 8.8 | 0.24% | 2017-12-28 | 2026-05-13 |
| CVE-2017-17949 | Cells Blog 3.5 has XSS via the pub_readpost.php fmid parameter. | [email protected] | 6.1 | 0.24% | 2017-12-28 | 2026-05-13 |
| CVE-2017-17948 | Cells Blog 3.5 has XSS via the jfdname parameter in an act=showpic request. | [email protected] | 6.1 | 0.24% | 2017-12-28 | 2026-05-13 |