CVE-2023-41623: Emlog

High severity, CVSS 7.2. EPSS: 0.8% chance of exploitation in the next 30 days.

Emlog version pro2.1.14 was discovered to contain a SQL injection vulnerability via the uid parameter at /admin/media.php.

Affected products

  • Emlog Emlog: version 2.1.14 only

Published 2023-12-12. Last modified 2026-06-17.