RSS   Podatności dla 'E-moblog'   RSS

2006-01-24
 
CVE-2006-0403

CWE-89
 

 
Multiple SQL injection vulnerabilities in e-moBLOG 1.3 allow remote attackers to execute arbitrary SQL commands via the (1) monthy parameter to index.php or (2) login parameter to admin/index.php. NOTE: some sources have reported item 1 as involving the "monthly" parameter, but this is incorrect.

 


Copyright 2024, cxsecurity.com

 

Back to Top