Описание
Multiple SQL injection vulnerabilities in Insanely Simple Blog 0.5 and earlier allow remote attackers to execute arbitrary SQL commands via the current_subsection parameter to index.php and other unspecified vectors.
Multiple SQL injection vulnerabilities in Insanely Simple Blog 0.5 and earlier allow remote attackers to execute arbitrary SQL commands via the current_subsection parameter to index.php and other unspecified vectors.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2007-3889
- https://exchange.xforce.ibmcloud.com/vulnerabilities/35450
- https://www.exploit-db.com/exploits/5774
- http://chroot.org/exploits/chroot_uu_010
- http://secunia.com/advisories/26105
- http://securityreason.com/securityalert/2904
- http://www.securityfocus.com/archive/1/473868/100/0/threaded
- http://www.securityfocus.com/archive/1/493224/100/0/threaded
- http://www.securityfocus.com/bid/24934
EPSS
Процентиль: 77%
0.01755
Низкий
CVE ID
Связанные уязвимости
nvd
около 19 лет назад
Multiple SQL injection vulnerabilities in Insanely Simple Blog 0.5 and earlier allow remote attackers to execute arbitrary SQL commands via the current_subsection parameter to index.php and other unspecified vectors.
EPSS
Процентиль: 77%
0.01755
Низкий