Simplog 0.9.1 might allow remote attackers to execute arbitrary SQL commands or trigger SQL error messages via invalid (1) pid, (2) blogid, (3) cid, or (4) m parameters to archive.php, or the (5) blogid parameter to blogadmin.php.
References
Configurations
History
No history.
Information
Published : 2005-09-27 19:03
Updated : 2008-09-05 20:53
NVD link : CVE-2005-3076
Mitre link : CVE-2005-3076
CVE.ORG link : CVE-2005-3076
JSON object : View
Products Affected
simplog
- simplog
CWE