MEDIUM
Multiple SQL injection vulnerabilities in index.php in blur6ex 0.3.452 allows remote attackers to execute arbitrary SQL commands via the ID parameter in a (1) g_reply or (2) g_permaPost action to the blog shard (engine/shards/blog.php), or a (3) g_viewContent action to the content shard (engine/shards/content.php)
Published Apr 13, 2006
5.0
MEDIUMCVSS 2.0
EPSS 1.22%
Description
Affected products
Remediation
Metrics
References (4)
Change history (0)
No recorded changes yet.