Vulnerabilities (CVE)

Filtered by vendor Eaden Mckee Subscribe
Filtered by product Bblog
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2005-1310 1 Eaden Mckee 1 Bblog 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in bBlog 0.7.4 allows remote attackers to execute arbitrary SQL commands via the postid parameter.
CVE-2005-1309 1 Eaden Mckee 1 Bblog 2024-02-04 4.3 MEDIUM N/A
Cross-site scripting (XSS) vulnerability in bBlog 0.7.4 allows remote attackers to inject arbitrary web script or HTML via the (1) entry title field or (2) comment body text.
CVE-2004-1570 1 Eaden Mckee 1 Bblog 2024-02-04 7.5 HIGH N/A
SQL injection vulnerability in bBlog 0.7.2 and 0.7.3 allows remote attackers to execute arbitrary SQL commands via the p parameter.