PluXml Blog v5.8.9 was discovered to contain a remote code execution (RCE) vulnerability in the Static Pages feature. This vulnerability is exploited via injecting a crafted payload into the Content field.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Pluxml | Pluxml | 5.8.9 (including) | 5.8.9 (including) |
| Pluxml | Ubuntu | bionic | * |
| Pluxml | Ubuntu | focal | * |
| Pluxml | Ubuntu | trusty | * |
| Pluxml | Ubuntu | xenial | * |