Multiple SQL injection vulnerabilities in phsBlog 0.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) eid parameter to comments.php, (2) cid parameter to index.php, and the (3) urltitle parameter to entries.php.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2008-08-11T23:00:00
Updated: 2024-08-07T09:45:18.915Z
Reserved: 2008-08-11T00:00:00
Link: CVE-2008-3588
Vulnrichment
No data.
NVD
Status : Modified
Published: 2008-08-11T23:41:00.000
Modified: 2017-09-29T01:31:45.117
Link: CVE-2008-3588
Redhat
No data.