Denial of Service Vulnerability in chaitak-gorai Blogbook GET Parameter Handler
CVE-2025-5404
Key Information:
- Vendor
Chaitak-gorai
- Status
- Vendor
- CVE Published:
- 1 June 2025
Badges
What is CVE-2025-5404?
A significant denial of service vulnerability exists in the GET Parameter Handler of the chaitak-gorai Blogbook, specifically in the /search.php file. This flaw allows an attacker to manipulate the 'Search' argument, potentially leading to service disruptions. The exploit has been publicly disclosed, highlighting potential risks associated with the affected product. Despite the identified vulnerability, the vendor has not responded to notifications regarding this issue, leaving users exposed without clear guidance or remediation efforts.
Affected Version(s)
Blogbook 92f5cf90f8a7e6566b576fe0952e14e1c6736513
Exploit Proof of Concept (PoC)
PoC code is written by security researchers to demonstrate the vulnerability can be exploited. PoC code is also a key component for weaponization which could lead to ransomware.
References
CVSS V4
Timeline
- 🟡
Public PoC available
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved