Simplog BlogID Parameter Multiple SQL Injection Vulnerabilities

Attackers can exploit these issues via a web client.

The following example URIs are available:

http://www.example.com/simplog/archive.php?blogid=
http://www.example.com/simplog/archive.php?blogid=1&pid=
http://www.example.com/simplog/index.php?blogid=


 

Privacy Statement
Copyright 2010, SecurityFocus