Search Results (2 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2020-37156 2 Bloodx Project, Diveshlunker 2 Bloodx, Bloodx 2026-03-05 6.5 Medium
BloodX 1.0 contains an authentication bypass vulnerability in login.php that allows attackers to access the dashboard without valid credentials. Attackers can exploit the vulnerability by sending a crafted payload with '=''or' parameters to bypass login authentication and gain unauthorized access.
CVE-2020-29282 1 Bloodx Project 1 Bloodx 2024-11-21 9.8 Critical
SQL injection vulnerability in BloodX 1.0 allows attackers to bypass authentication.