CVE-2008-2670
EUVD-2008-266512.06.2008, 02:32
Multiple SQL injection vulnerabilities in index.php in Insanely Simple Blog 0.5 allow remote attackers to execute arbitrary SQL commands via (1) the id parameter, or (2) the term parameter in a search action. NOTE: the current_subsection parameter is already covered by CVE-2007-3889.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| insanelysimple2 | isblog | 0.5 |
𝑥
= Vulnerable software versions
References