Filtered by vendor Bo-blog Subscriptions
Filtered by product Bw Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2019-7587 1 Bo-blog 1 Bw 2024-11-21 N/A
Bo-blog Wind through 1.6.0-r allows SQL Injection via the admin.php/comments/batchdel/ comID parameter because this parameter is mishandled in the mode/admin.mode.php delBlockedBatch function.