VendorsEaden Mckeebblogall versions
Vulnerabilities

Eaden Mckee Bblog

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2005-1310
SQL injection vulnerability in bBlog 0.7.4 allows remote attackers to execute arbitrary SQL commands via the postid parameter.
Published 2005-04-27 · Modified
7.5EPSS 0.013
CVE-2004-1570
SQL injection vulnerability in bBlog 0.7.2 and 0.7.3 allows remote attackers to execute arbitrary SQL commands via the p parameter.
Published 2005-02-20 · Modified
7.5EPSS 0.012
CVE-2005-1309
Cross-site scripting (XSS) vulnerability in bBlog 0.7.4 allows remote attackers to inject arbitrary web script or HTML via the (1) entry title field or (2) comment body text.
Published 2005-04-27 · Modified
4.3EPSS 0.013