Filtered by vendor Supersimple Subscriptions
Filtered by product Super Simple Blog Script Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2009-2553 1 Supersimple 1 Super Simple Blog Script 2024-11-21 N/A
Multiple SQL injection vulnerabilities in comments.php in Super Simple Blog Script 2.5.4, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the entry parameter.
CVE-2009-2552 1 Supersimple 1 Super Simple Blog Script 2024-11-21 N/A
Multiple directory traversal vulnerabilities in comments.php in Super Simple Blog Script 2.5.4 allow remote attackers to overwrite, include, and execute arbitrary local files via the entry parameter.